bsstar[.]top
Phishing and security check for bsstar.top
Evidence Analysis
The domain bsstar.top was recorded on August 02, 2026 as an active generic phishing endpoint. VirusTotal analysis shows that 11 of 91 security vendors have flagged the domain, indicating a notable detection rate across multiple scanning engines. Google Safe Browsing has also marked the URL as a social engineering threat, reinforcing the conclusion that the site is being used to harvest credentials or other sensitive information.
The domain currently appears on a single external security blocklist and is explicitly listed by the PhishDestroy service, which further confirms its malicious disposition. No public information regarding the registrar, hosting IP address, ASN, or TLS configuration is available in the supplied intelligence, and the page title has not been disclosed, leaving those infrastructure components unverified at this time. Given the confirmed vendor detections and the inclusion on reputable blocklists, defenders should treat bsstar.top as hostile.
Recommended mitigation steps include adding the domain to network firewalls, DNS sinkhole configurations, and endpoint protection block lists, as well as monitoring for any related traffic spikes or credential abuse patterns. Continuous re‑evaluation is advised, as additional telemetry such as hosting details or content snapshots may emerge, allowing for more granular attribution or remediation actions.
Data coverage12 recorded checks
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | bsstar.top |
malicious | Sinkholed |
| DNS4EU | bsstar.top |
malicious | Sinkholed |
| OpenDNS | bsstar.top |
phishing | Phishing Block |
| Cloudflare DNS | bsstar.top |
malicious | Sinkholed |
| DNS4EU | steamcomnmuntiy.com |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Evidence & External ReportsIndependent lookups and source reports
PD-20260802-7BED2C Recipient: abuse@globaldomaingroup.com Victim safety and official reportingImmediate actions and verified reporting channels
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.