GrizzlyGrizzly
Recent phishing
Phishing

Impersonating Steam

Intent: Data collection

  • Domain is not operated by Steam
  • TLS certificate has no organization information
  • TLS certificate was issued very recently
  • Mail servers do not match Steam's known infrastructure
  • Domain not registered through Steam's usual registrar
  • SPF record does not reference Steam's infrastructure

payment form to top up Steam account balance with login, amount, email, and payment method inputs

Scanned 81 days ago · Jul 10, 2026, 18:51 UTC

Think this verdict is wrong?

Check a suspicious URL yourself — free to try.

Scan a URL
Phishing: steam.money — Grizzly