steamcomunity-client[.]netlify[.]app
“Iniciar sessão”
साक्ष्य सारांश
This domain, steamcomunity-client.netlify.app, operates as a credential harvesting phishing site targeting Steam users. Analysis indicates the site presents a fraudulent login portal titled 'Iniciar sessão' (Portuguese for 'Sign in'), designed to mimic the legitimate Steam Community platform. The domain specifically aims to deceive users into submitting their account credentials, which are then captured and likely exfiltrated to attacker-controlled infrastructure. The use of a Portuguese-language login page suggests targeting of users in Portuguese-speaking regions, though the threat is not geographically restricted. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain is flagged by 19 out of 95 security vendors on VirusTotal, including detection labels such as 'phishing' and 'malicious site.' It resolves to the IP address 63.176.8.218 and is hosted through Netlify, a legitimate platform often abused for phishing due to its free hosting services. The SSL certificate, issued by DigiCert Inc (DigiCert Global G2 TLS RSA SHA256 2020 CA1), provides HTTPS encryption but does not validate the site's legitimacy. Notably, the domain's creation date is listed as June 15, 2026, an anomaly suggesting either a typo in registration data or an attempt to evade detection by appearing future-dated. The domain appears on at least one security blocklist and remains active as of this report. Users who have visited steamcomunity-client.netlify.app or entered credentials on the site should take immediate action. First, change Steam account passwords using a known-legitimate device and enable multi-factor authentication if not already active. Monitor the account for unauthorized activity, including purchases, friend requests, or changes to security settings. If payment methods are linked to the account, review transaction histories for fraudulent charges. Clear browser cache and cookies to remove any persistent session tokens. Avoid clicking on links in unsolicited messages, even if they appear to originate from Steam or gaming-related contacts. Report the incident to Steam support and consider notifying local cybersecurity authorities if financial data was exposed. Infrastructure owners should block the domain and IP 63.176.8.218 at the network perimeter to prevent further access.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
तकनीकें
2 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of steamcomunity-client.netlify.app · checked Jun 15, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।