steam-games[.]top
“App”
steam-games.top — 内容不可用 (HTTP 502). 品牌冒充:Steam; 诈骗类型:Gaming Scam. 证据摘要: VirusTotal 7/95 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, G-Data, Lionic); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 71/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of steam-games.top shows a recently registered domain that was used to impersonate the Steam gaming platform. The domain was created on February 21, 2026 and is registered through Gname.com Pte. Ltd. Its authoritative name servers are a.share-dns.com. and b.share-dns.net. DNS resolution points to the IP address 154.26.138.93, which is allocated to Contabo Asia Private Limited in Singapore under ASN 141995. No TLS certificate was observed for the host, indicating that any web service would have been delivered over plain HTTP.
The site’s page title, when captured, was simply "App", providing no additional context about the content. Threat intelligence indicates the domain was flagged by PhishDestroy and appears on one external security blocklist. VirusTotal scans show that seven of ninety‑five antivirus and URL‑reputation engines marked the domain as malicious, reinforcing the suspicion of abuse. The hosting provider and IP location suggest a low‑cost bulk hosting environment often leveraged for large‑scale scam campaigns. The domain is currently offline, having been taken down after detection.
Defenders should continue to block the domain and its associated IP address, add the host to internal URL filtering lists, and monitor for any newly created domains that resolve to the same IP range or share the same registrar and name‑server pattern. Because the site is no longer reachable, there is limited visible payload or credential‑harvesting behavior to evaluate, and the exact phishing landing page cannot be confirmed. However, the combination of brand impersonation of Steam, the “Gaming Scam” classification, the presence on a security blocklist, and multiple vendor detections provides sufficient evidence to treat steam-games.top as a confirmed malicious actor targeting Steam users. Ongoing surveillance of related infrastructure is recommended to pre‑empt future re‑hosting attempts.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | steam-games.top |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
“I applied for a role online that I could do part-time to supplement my income. I was contacted by Rose on WhatsApp to say that there was an opportunity which was doing optimisation for online gaming. She got me set up on the platform and also got me to set up a crypto account. I had a task for to complete 20 games. Each game you got a % and then not very common you could get a bonus game which would put your account in negative and you would need to clear the negative balance to allow you to get”
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。