skrill-app[.]co[.]com
“Skrill Login | Skrill Account | Skrill”
Tóm tắt bằng chứng
This domain, skrill-app.co.com, is a confirmed phishing infrastructure designed to impersonate the Skrill payment platform while specifically targeting Ethereum cryptocurrency users. Analysis indicates the site operates as a crypto drainer, a type of malicious infrastructure that tricks victims into connecting their cryptocurrency wallets to fraudulent interfaces, enabling unauthorized transfers of digital assets. The page title, 'Skrill Login | Skrill Account | Skrill,' mimics legitimate Skrill branding to deceive users into entering sensitive credentials or wallet access details, which are then harvested for financial theft. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain resolves to IP address 104.21.47.246, hosted on Cloudflare’s network (AS13335), a common tactic to obscure origin infrastructure. Despite its creation date of August 16, 1997, registered through Moniker Online Services LLC, the domain exhibits characteristics inconsistent with legitimate long-standing services, including the absence of an SSL certificate. Security vendors on VirusTotal flagged this domain at a ratio of 17 out of 95, and it appears on five independent blocklists, including PhishDestroy and PhishingDB. The domain has since been taken offline, though its prior operational status poses residual risk to users who may have interacted with it. Users who visited skrill-app.co.com or entered credentials on the site should immediately revoke access to any connected cryptocurrency wallets and transfer remaining assets to a new, secure wallet. All passwords associated with the impersonated service should be changed, and multi-factor authentication should be enabled on all financial and cryptocurrency accounts. Given the high-risk nature of crypto drainers, affected users are advised to monitor transaction histories for unauthorized activity and report the incident to relevant financial and cybersecurity authorities. The absence of SSL encryption further underscores the domain’s fraudulent intent, as legitimate financial platforms universally enforce encrypted connections.
Data Coverage
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 13/08/2026
7 nguồn ngoài được giám sát Không trùng khớp
Dòng thời gian phát hiện
-
Cloudflare Radar
Đã lưu lần quét Cloudflare Radar · Mở lần quét
-
Trạng thái tên miền
Có thể truy cập → Không thể truy cập
-
Cloudflare Radar
Đã lưu lần quét Cloudflare Radar · Mở lần quét
-
Trạng thái tên miền
Không thể truy cập → Có thể truy cập
Tình báo pháp chứng
Phân tích của VirusTotal
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai