Scam Checker for Messages and Links
An online tool for checking a suspicious message, link or screenshot. It shows where a link really goes without opening it, catches lookalike domains and recognizes scam scripts in ten languages.
How to check
The whole thing, link included, or a picture of it. The check runs as you type.
If the domain isn't the one you expected, you can stop there.
Hang up and call back yourself using the number on your card.
Check before you send money or read out a code
Already sent money or shared a code?
- Call your bank now using the number on your card or in the app. Ask them to freeze the card and dispute the transaction.
- Change passwords and sign out everywhere bank, email, government accounts. If you shared a code for one of them, start there.
- Remove apps you installed at their request AnyDesk, a "bank update" and the like. If you're not sure everything is gone, factory-reset the phone.
- File a police report the same day with numbers, screenshots and your bank statement. Without it, the bank can do little.
- Warn your family scammers may start asking them for money in your name.
Family code word
Against a "Mom, I'm in trouble" call, including one in a voice cloned from social media. A clone can't be told apart by ear, but only your family knows the word.
Agree on it out loud with everyone who might get a call in your name. Don't send it in a message: the point is that it's written down nowhere.
The rule is simple: any unexpected request for money comes with the code word first.
The breakdown will appear here
Paste a message or a link, or tap one of the examples.
- sberbank.ru
@evil.topWhere the link goesEverything before "@" isn't the address. The real domain is shown large. - sb
еrbank.ruLookalike lettersA Cyrillic "е" in a Latin domain is invisible to the eye, not to the check. - «read me the code»Scam scriptsSafe account, one-time codes, "Mom, I'm in trouble", in 10 languages.
The check looks at the text and at how the link is built. It doesn't look the domain up in databases or open the link, so there is no "safe" verdict here.