steamcommunitiy[.]cc
“Steam Gift Cards”
Сводка доказательств
Analysis of steamcommunitiy.cc, which was taken offline as of the report date, shows a clear pattern of brand impersonation targeting the Steam gaming platform. The domain was registered on 29 September 2025 through NiceNIC International Group Co., Limited and resolves to the Cloudflare‑owned address 172.67.159.157, belonging to AS13335 in the United States. No SSL certificate is presented for the site, indicating that HTTPS was not enforced. The authoritative name servers listed are annalise.ns.cloudflare.com, kay.ns.cloudflare.com, kyle.ns.cloudflare.com and oswald.n, all consistent with Cloudflare hosting. The page title observed during the brief availability was “Steam Gift Cards,” reinforcing the claim that the site attempted to lure victims with purported Steam gift‑card offers.
Threat intelligence feeds corroborate malicious intent. AlienVault OTX includes the domain in 17 separate pulses, and VirusTotal recorded detections from 12 of 95 scanning engines, reflecting a moderate consensus of malicious behavior. Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single security blocklist, currently enforced by PhishDestroy. The combination of brand‑targeted naming, the “Gaming Scam” classification, and the absence of legitimate security controls suggests the site was used to harvest credentials or sell fraudulent Steam gift cards.
Uncertainties remain regarding the exact payload delivered to visitors, as no page content beyond the title has been captured. The offline status precludes real‑time verification of HTTP responses or malware distribution vectors. Defenders should block any outbound DNS or HTTP requests to steamcommunitiy.cc, add the IP 172.67.159.157 to deny‑list rules where appropriate, and monitor for similar Cloudflare‑hosted domains that employ Steam‑related branding. Continuous feeding of observed indicators to threat‑intel platforms will improve detection of future impersonation campaigns.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание