ent[.]mobswatch[.]top
“Anmelden”
ent.mobswatch.top — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Steam; घोटाले का प्रकार: Gaming Scam. साक्ष्य सारांश: VirusTotal 13/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, Fortinet); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 89/100. रजिस्ट्रार: Web Commerce Communica….
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain ent.mobswatch.top was registered on 21 February 2026 through Web Commerce Communications Limited. Its authoritative nameservers are christian.ns.cloudflare.com and sima.ns.cloudflare.com, and DNS resolution points to IP address 104.21.31.204, which belongs to Cloudflare, Inc. (ASN 13335) and is geolocated in the United States. The TLS certificate presented is identified as “WE1”, indicating a generic Cloudflare‑issued certificate rather than a brand‑validated credential. Analysis by VirusTotal shows that 13 of 93 scanning engines flagged the host as malicious, and the domain appears on a single external blocklist.
PhishDestroy has already taken the site offline, and current network probes report no active HTTP service. The site’s page title is “Anmelden”, a German term for “login”, and the listed brand target is Steam. Combined with the classification “Gaming Scam”, the evidence points to a credential‑stealing operation that attempts to lure Steam users into submitting login information. No visual or content capture is available because the site is offline, so the exact phishing layout cannot be confirmed.
Nevertheless, the presence of a Steam‑related brand target, the German login title, and the vendor detection count provide sufficient context for defensive actions. Defenders should add ent.mobswatch.top to URL filtering and firewall block lists, monitor traffic to the associated Cloudflare IP range for similar patterns, and alert end users about unsolicited Steam‑related login prompts, especially those using German language cues. Continuous monitoring of newly registered domains using the same registrar or similar naming patterns is recommended to pre‑empt future impersonation attempts. Attribution of the operators remains unknown, and further investigation of the hosting account may yield additional intelligence.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: mobswatch.top
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain mobswatch.top behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।