steamcomunity-client[.]netlify[.]app
steamcomunity-client.netlify.app 网络钓鱼与安全检查
“Iniciar sessão”
steamcomunity-client.netlify.app — 内容不可用 (HTTP 404). 品牌冒充:Steam; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 19/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); CF Radar malicious; PhishDestroy score 100/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, steamcomunity-client.netlify.app, operates as a credential harvesting phishing site targeting Steam users. Analysis indicates the site presents a fraudulent login portal titled 'Iniciar sessão' (Portuguese for 'Sign in'), designed to mimic the legitimate Steam Community platform. The domain specifically aims to deceive users into submitting their account credentials, which are then captured and likely exfiltrated to attacker-controlled infrastructure. The use of a Portuguese-language login page suggests targeting of users in Portuguese-speaking regions, though the threat is not geographically restricted. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain is flagged by 19 out of 95 security vendors on VirusTotal, including detection labels such as 'phishing' and 'malicious site.' It resolves to the IP address 63.176.8.218 and is hosted through Netlify, a legitimate platform often abused for phishing due to its free hosting services. The SSL certificate, issued by DigiCert Inc (DigiCert Global G2 TLS RSA SHA256 2020 CA1), provides HTTPS encryption but does not validate the site's legitimacy. Notably, the domain's creation date is listed as June 15, 2026, an anomaly suggesting either a typo in registration data or an attempt to evade detection by appearing future-dated. The domain appears on at least one security blocklist and remains active as of this report. Users who have visited steamcomunity-client.netlify.app or entered credentials on the site should take immediate action. First, change Steam account passwords using a known-legitimate device and enable multi-factor authentication if not already active. Monitor the account for unauthorized activity, including purchases, friend requests, or changes to security settings. If payment methods are linked to the account, review transaction histories for fraudulent charges. Clear browser cache and cookies to remove any persistent session tokens. Avoid clicking on links in unsolicited messages, even if they appear to originate from Steam or gaming-related contacts. Report the incident to Steam support and consider notifying local cybersecurity authorities if financial data was exposed. Infrastructure owners should block the domain and IP 63.176.8.218 at the network perimeter to prevent further access.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of steamcomunity-client.netlify.app · checked Jun 15, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。