Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hetzner.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
steam[.]mechanicshot[.]de
“Steam Community :: Group :: Team MechanicShots”
steam.mechanicshot.de — 未验证. 品牌冒充:Steam; 诈骗类型:Gaming Scam. 证据摘要: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 65/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies steam.mechanicshot.de as a live credential-phishing domain masquerading as the official Steam support portal. This domain was flagged by PhishDestroy under seed 2ca33d with a risk level still under investigation but confirmed active. All intelligence points to a recently activated trap. VirusTotal shows zero detections (0/95 engines) and the site resolves to IP 162.55.217.149. The domain uses a Let's Encrypt SSL certificate and was observed serving a spoofed Steam login page designed to harvest usernames and passwords. The registrar is Cloudflare, Inc., and the domain resolves to a German IP range commonly associated with transient hosting. The absence of detections on VirusTotal does not guarantee safety; such zero-detection phishing pages often fly under the radar for 24–72 hours, luring victims during this blind spot. Steam account takeovers from this campaign can lead to financial loss, unauthorized game purchases, and exposure of payment data linked to the compromised account. The domain has not yet appeared on any public blocklists, and its trust score remains unestablished due to its youth. To mitigate credential theft, users should avoid clicking links in unsolicited emails or messages referencing Steam. Always navigate directly to store.steampowered.com via a trusted browser bookmark. Enable Steam Guard two-factor authentication to add a critical second layer of defense. If credentials are entered, immediately change the password, revoke unknown sessions, and monitor linked payment methods. Report the domain to Steam support and consider revoking any third-party app permissions under the compromised account.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 4 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of steam.mechanicshot.de · checked Mar 29, 2026
证据与外部报告
PD-20260329-BE6E6B Recipient: abuse@hetzner.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。