Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hetzner.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
steam[.]mechanicshot[.]de
“Steam Community :: Group :: Team MechanicShots”
steam.mechanicshot.de — Doğrulanmamış. Marka kimliğine bürünme: Steam; Dolandırıcılık türü: Gaming Scam. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 65/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies steam.mechanicshot.de as a live credential-phishing domain masquerading as the official Steam support portal. This domain was flagged by PhishDestroy under seed 2ca33d with a risk level still under investigation but confirmed active. All intelligence points to a recently activated trap. VirusTotal shows zero detections (0/95 engines) and the site resolves to IP 162.55.217.149. The domain uses a Let's Encrypt SSL certificate and was observed serving a spoofed Steam login page designed to harvest usernames and passwords. The registrar is Cloudflare, Inc., and the domain resolves to a German IP range commonly associated with transient hosting. The absence of detections on VirusTotal does not guarantee safety; such zero-detection phishing pages often fly under the radar for 24–72 hours, luring victims during this blind spot. Steam account takeovers from this campaign can lead to financial loss, unauthorized game purchases, and exposure of payment data linked to the compromised account. The domain has not yet appeared on any public blocklists, and its trust score remains unestablished due to its youth. To mitigate credential theft, users should avoid clicking links in unsolicited emails or messages referencing Steam. Always navigate directly to store.steampowered.com via a trusted browser bookmark. Enable Steam Guard two-factor authentication to add a critical second layer of defense. If credentials are entered, immediately change the password, revoke unknown sessions, and monitor linked payment methods. Report the domain to Steam support and consider revoking any third-party app permissions under the compromised account.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Adli İstihbarat
Teknolojiler · 4 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of steam.mechanicshot.de · checked Mar 29, 2026
Kanıtlar ve Dış Raporlar
PD-20260329-BE6E6B Recipient: abuse@hetzner.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin