steamcommunity[.]vov[.]ru
“Steam Community”
steamcommunity.vov.ru — Nicht bestätigt. Markenidentität: Steam; Betrugstyp: Gaming Scam. Zusammenfassung der Beweislage: VirusTotal 16/95 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar); 1 external blocklist match (DiscordPhishing); CF Radar malicious; PhishDestroy score 95/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain steamcommunity.vov.ru is assessed at an elevated risk level for brand impersonation, specifically targeting the Steam brand. Analysis indicates that the site was designed to mislead users into believing they were interacting with the legitimate Steam Community, potentially to steal credentials or personal information.
This domain is flagged by 16 out of 95 security vendors on VirusTotal, indicating a significant level of suspicion among the security community. The domain is registered under the AS3216 PJSC Vimpelcom network, with an IP address of 212.46.196.140, located in Russia. The site has been taken offline, but prior to this, it appeared on two security blocklists, PhishDestroy and DiscordPhishing. The lack of an SSL certificate further suggests that the site was not a legitimate Steam service. While the creation date is not provided, the domain's presence on multiple blocklists and the high detection rate by security vendors suggest that it was active and used for malicious purposes for a considerable period.
To mitigate the risks associated with brand impersonation, users should be educated to verify the URL and SSL certificate of any site they visit, especially when entering sensitive information. Organizations should consider implementing domain monitoring tools to detect and block similar impersonation attempts. Additionally, users should report any suspicious activity to the legitimate brand and use multi-factor authentication wherever possible to protect their accounts from unauthorized access.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Archivierte Beweise
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt