s[.]teame[.]ms
“403 Forbidden”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
This domain, s.teame.ms, is flagged as an active phishing endpoint with high-risk indicators. Registered on October 12, 2025, through Key-Systems, the domain resolves to 104.21.30.193, an address assigned to AS13335 (Cloudflare, Inc.). The infrastructure is protected by Cloudflare nameservers (fay.ns.cloudflare.com and memphis.ns.cloudflare.com) and employs HTTP/3, a protocol often used to evade traditional network-based detection. A 301 redirect is currently observed, though the destination remains undetermined due to a 403 Forbidden response on the root path, suggesting either access restrictions or a placeholder state. Analysis indicates the domain is recognized as malicious by 12 of 95 security vendors on VirusTotal, with listings on at least two security blocklists (PhishDestroy and PhishingDB). The Gridinsoft trust score of 1/100 further corroborates its classification as a confirmed phishing resource. While the exact target or phishing kit in use is not yet analyzed, the domain’s recent creation and association with Cloudflare’s network align with common tactics used to obscure malicious activity. The SSL certificate, issued by Google Trust Services (WE1), does not provide additional context regarding the intended victim or campaign. Defenders should treat this domain as hostile and implement blocking at the DNS or network layer. The 301 redirect behavior warrants monitoring for downstream domains or IPs that may be part of the same campaign. Given the 403 response, further investigation into subdomains or alternative paths (e.g., /login, /auth) is recommended to identify active phishing pages. Organizations using Cloudflare for legitimate purposes should verify that this domain is not whitelisted in security policies, as its infrastructure overlaps with benign services. No brand-specific indicators are present in the available data, limiting attribution to a generic phishing classification.
Data Coverage
Señales de seguridad
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
-
VirusTotal
12 → 13
-
VirusTotal
13 → 14
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of s.teame.ms · checked Mar 2, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.