challengem[.]pro
challengem.pro 网络钓鱼与安全检查
“Global | eSports and Gaming Community”
challengem.pro — 内容不可用 (HTTP 502). 品牌冒充:Gamingscam. 证据摘要: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, challengem.pro, operates as a fraudulent credential-harvesting platform disguised as a legitimate eSports and gaming community portal. Analysis indicates the site targets gamers and online community members by presenting a fabricated interface designed to mimic authentic gaming forums or tournament registration pages. The primary threat involves tricking users into submitting login credentials, personal information, or payment details under the pretense of accessing exclusive content, tournaments, or rewards. The infrastructure and content are engineered to exploit trust in gaming communities, increasing the likelihood of successful social engineering attacks. Infrastructure analysis reveals multiple high-confidence threat indicators. The domain was registered on February 21, 2026, an anomalous creation date suggesting potential domain spoofing or backdating. It resolves to the IP address 172.67.186.62, hosted on AS13335 (Cloudflare, Inc.), a common obfuscation tactic used to conceal malicious origin servers. Security vendors on VirusTotal flagged the domain in 17 out of 95 scans, while it appears on one security blocklist. The SSL certificate is issued by WE1, a provider frequently associated with low-reputation domains. These technical artifacts collectively indicate a deliberate attempt to evade detection while maintaining operational persistence. Users who visited challengem.pro or interacted with its content should take immediate remediation steps. Any credentials entered on the site must be considered compromised and should be changed across all platforms where reused. Monitor financial accounts and gaming profiles for unauthorized activity, as stolen credentials may be leveraged for fraudulent transactions or account takeovers. If personal or payment information was submitted, enable additional authentication layers and consider identity protection measures. Organizations managing gaming or eSports platforms should update their threat intelligence feeds to include this domain and its associated indicators to prevent further exposure.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | domtomcom.net |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。