stearmconmumniity[.]com
Verifica phishing e sicurezza per stearmconmumniity.com
“stearmconmumniity.com”
stearmconmumniity.com — Contenuto non disponibile (HTTP 404). Simulazione del marchio: Steam; Tipo di truffa: Fake Airdrop. Riepilogo delle prove: VirusTotal 22/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 3 alerts; PhishDestroy score 95/100. Registrar: Squarespace Domains.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, stearmconmumniity.com, operates as a fraudulent Steam Community portal designed to harvest user credentials through brand impersonation. Analysis indicates the site mimics the legitimate Steam login interface, tricking users into entering their account details under the false pretense of accessing community features or resolving account issues. The threat specifically targets gamers and Steam users, exploiting trust in the platform to capture sensitive login information, which can lead to account takeovers, unauthorized transactions, or further social engineering attacks against contacts in the victim’s network.
Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain was registered on March 31, 2026, through Squarespace Domains LLC, a registrar frequently abused for phishing campaigns due to its accessibility and bulk registration options. It resolves to the IP address 172.67.202.183, hosted on infrastructure associated with a content delivery network known for obfuscating malicious endpoints. Security engines have flagged the domain in 22 out of 95 VirusTotal scans, while it appears on two independent security blocklists, including PhishDestroy and PhishingDB. The page title, an exact match of the domain name, further suggests a lack of legitimate branding or content structure, a common trait in hastily deployed phishing sites.
Users who visited stearmconmumniity.com or entered credentials on the site should take immediate remedial action. First, reset passwords for any accounts accessed from the compromised session, prioritizing Steam and linked email accounts. Enable multi-factor authentication (MFA) using app-based or hardware tokens, avoiding SMS-based methods due to susceptibility to interception. Review account activity for unauthorized purchases, trades, or messages sent from the account. Monitor financial statements for fraudulent transactions if payment methods were stored on the platform. Additionally, clear browser cache and cookies to remove any residual session tokens, and scan the device for malware using updated security tools to detect potential secondary infections or keyloggers deployed during the phishing attempt.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | stearmconmumniity.com |
phishing | Phishing Block |
| Hagezi Threat Feed | stearmconmumniity.com |
malicious | Sinkholed |
| DNS4EU | stearmconmumniity.com |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Dati e relazioni esterne
PD-20260331-72D5C4 Recipient: abuse-complaints@squarespace.com Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo