login[.]workshopconceptdesign[.]com
login.workshopconceptdesign.com 网络钓鱼与安全检查
“Sign In”
login.workshopconceptdesign.com — 可达 · 访问受限 (HTTP 403). 品牌冒充:Steam; 诈骗类型:Gaming Scam. 证据摘要: VT 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious; GSB no flag; BL 0; PD 100/100. 注册商: Global Domain Group.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain login.workshopconceptdesign.com was registered on 24 January 2026 through Global Domain Group LLC. The authoritative nameservers darl.ns.cloudflare.com and leanna.ns.cloudflare.com indicate that the domain is front‑ended by Cloudflare’s network (AS13335, United States). DNS resolution points to the IP address 188.114.97.3, which is owned by Cloudflare and serves HTTP/3 traffic. The site presents a page title of “Sign In”, consistent with the reported brand impersonation of Steam, and is classified as a gaming‑related scam. An SSL certificate issued by Google Trust Services (common name WE1) is in place, but the HTTP response code is 403, suggesting access restrictions or deliberate content blocking.
Security telemetry shows that 16 of 93 vendors on VirusTotal have flagged the domain, and the domain appears on one external blocklist. It has been added to the PhishDestroy blocklist, and the Gridinsoft trust score is 0 out of 100, indicating a high confidence of malicious intent. The overall risk rating is high and the campaign remains active as of the report date, 23 July 2026. Current intelligence does not reveal the exact payload or credential‑harvesting mechanisms beyond the generic “Sign In” title; therefore the full malicious functionality cannot be confirmed.
Defenders should block the domain at perimeter firewalls and DNS resolvers, add the IP address 188.114.97.3 to network deny lists, and ensure that any inbound traffic to Cloudflare‑served hosts is inspected for anomalous authentication attempts targeting Steam accounts. Continuous monitoring of the associated ASN and related Cloudflare‑hosted subdomains is advised, as threat actors frequently reuse infrastructure. Updating endpoint detection signatures with the observed VirusTotal detections and incorporating the domain into threat‑intel feeds will reduce exposure to this active impersonation campaign.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: workshopconceptdesign.com
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
For the registrable domain workshopconceptdesign.com behind this subdomain, the registrar above operates under an ICANN contract. ICANN collects annual, variable and transaction-based fees tied to registrations, renewals and transfers.
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。