Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hetzner.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
steam[.]mechanicshot[.]de
“Steam Community :: Group :: Team MechanicShots”
steam.mechanicshot.de — لم يتم التحقق منها. انتحال العلامة التجارية: Steam; نوع الاحتيال: Gaming Scam. ملخص الأدلة: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 65/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies steam.mechanicshot.de as a live credential-phishing domain masquerading as the official Steam support portal. This domain was flagged by PhishDestroy under seed 2ca33d with a risk level still under investigation but confirmed active. All intelligence points to a recently activated trap. VirusTotal shows zero detections (0/95 engines) and the site resolves to IP 162.55.217.149. The domain uses a Let's Encrypt SSL certificate and was observed serving a spoofed Steam login page designed to harvest usernames and passwords. The registrar is Cloudflare, Inc., and the domain resolves to a German IP range commonly associated with transient hosting. The absence of detections on VirusTotal does not guarantee safety; such zero-detection phishing pages often fly under the radar for 24–72 hours, luring victims during this blind spot. Steam account takeovers from this campaign can lead to financial loss, unauthorized game purchases, and exposure of payment data linked to the compromised account. The domain has not yet appeared on any public blocklists, and its trust score remains unestablished due to its youth. To mitigate credential theft, users should avoid clicking links in unsolicited emails or messages referencing Steam. Always navigate directly to store.steampowered.com via a trusted browser bookmark. Enable Steam Guard two-factor authentication to add a critical second layer of defense. If credentials are entered, immediately change the password, revoke unknown sessions, and monitor linked payment methods. Report the domain to Steam support and consider revoking any third-party app permissions under the compromised account.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
التقنيات · 4 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of steam.mechanicshot.de · checked Mar 29, 2026
الأدلة والتقارير الخارجية
PD-20260329-BE6E6B Recipient: abuse@hetzner.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب