swstorebd[.]com
Análisis de phishing y seguridad de swstorebd.com
“Home - Steam Wallet Store Bangladesh”
swstorebd.com — Último activo conocido (HTTP 200). Suplantación de marca: Steam; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100. Registrador: NameCheap.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Evidence Analysis
This domain, swstorebd.com, is currently flagged as a high-risk phishing domain targeting Steam Wallet users. The domain was registered through NameCheap, Inc. on May 17, 2026, and is actively hosted on an IP address located in Germany (136.243.106.228) managed by Hetzner. The presence of a Let's Encrypt SSL certificate (E7) may give an initial false sense of security, but it is important to note that SSL certificates do not guarantee the legitimacy of a website. The domain has been identified in one threat intelligence pulse on AlienVault OTX, which suggests that it has been associated with malicious activities. Additionally, the domain has been added to the PhishDestroy blocklist, further indicating its involvement in phishing operations. The Gridinsoft trust score for this domain is 0 out of 100, which is the lowest possible score and indicates a significant level of risk. Only one security vendor out of 95 on VirusTotal has flagged this domain, which might suggest that it is relatively new or has not been widely recognized yet. However, the low trust score and presence on a security blocklist provide strong indicators of its malicious intent. Defenders should immediately block this domain in their network security configurations and monitor for any attempts by users to access it. Given the domain's focus on a popular gaming service, it is likely that the phishing campaign is targeting gamers who may be looking to purchase Steam Wallet credits. Security teams should also educate users about the risks of phishing and the importance of verifying the legitimacy of websites before entering sensitive information. Regularly updating threat intelligence feeds and implementing multi-factor authentication can further mitigate the risk of credential theft and other related attacks.
Cobertura de los datos12 recorded checks
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Datos y informes externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.