steamcommunity[.]vov[.]ru
“Steam Community”
steamcommunity.vov.ru — 未验证. 品牌冒充:Steam; 诈骗类型:Gaming Scam. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, ESET); 1 external blocklist match (DiscordPhishing); CF Radar malicious; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain steamcommunity.vov.ru is assessed at an elevated risk level for brand impersonation, specifically targeting the Steam brand. Analysis indicates that the site was designed to mislead users into believing they were interacting with the legitimate Steam Community, potentially to steal credentials or personal information.
This domain is flagged by 16 out of 95 security vendors on VirusTotal, indicating a significant level of suspicion among the security community. The domain is registered under the AS3216 PJSC Vimpelcom network, with an IP address of 212.46.196.140, located in Russia. The site has been taken offline, but prior to this, it appeared on two security blocklists, PhishDestroy and DiscordPhishing. The lack of an SSL certificate further suggests that the site was not a legitimate Steam service. While the creation date is not provided, the domain's presence on multiple blocklists and the high detection rate by security vendors suggest that it was active and used for malicious purposes for a considerable period.
To mitigate the risks associated with brand impersonation, users should be educated to verify the URL and SSL certificate of any site they visit, especially when entering sensitive information. Organizations should consider implementing domain monitoring tools to detect and block similar impersonation attempts. Additionally, users should report any suspicious activity to the legitimate brand and use multi-factor authentication wherever possible to protect their accounts from unauthorized access.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。