Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hetzner.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
steam[.]mechanicshot[.]de
“Steam Community :: Group :: Team MechanicShots”
steam.mechanicshot.de — Непроверенный. Олицетворение бренда: Steam; Тип мошенничества: Gaming Scam. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 65/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies steam.mechanicshot.de as a live credential-phishing domain masquerading as the official Steam support portal. This domain was flagged by PhishDestroy under seed 2ca33d with a risk level still under investigation but confirmed active. All intelligence points to a recently activated trap. VirusTotal shows zero detections (0/95 engines) and the site resolves to IP 162.55.217.149. The domain uses a Let's Encrypt SSL certificate and was observed serving a spoofed Steam login page designed to harvest usernames and passwords. The registrar is Cloudflare, Inc., and the domain resolves to a German IP range commonly associated with transient hosting. The absence of detections on VirusTotal does not guarantee safety; such zero-detection phishing pages often fly under the radar for 24–72 hours, luring victims during this blind spot. Steam account takeovers from this campaign can lead to financial loss, unauthorized game purchases, and exposure of payment data linked to the compromised account. The domain has not yet appeared on any public blocklists, and its trust score remains unestablished due to its youth. To mitigate credential theft, users should avoid clicking links in unsolicited emails or messages referencing Steam. Always navigate directly to store.steampowered.com via a trusted browser bookmark. Enable Steam Guard two-factor authentication to add a critical second layer of defense. If credentials are entered, immediately change the password, revoke unknown sessions, and monitor linked payment methods. Report the domain to Steam support and consider revoking any third-party app permissions under the compromised account.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Технологии · 4 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of steam.mechanicshot.de · checked Mar 29, 2026
Доказательства и внешние отчеты
PD-20260329-BE6E6B Recipient: abuse@hetzner.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание