enterface[.]faceitauditv2[.]com
साक्ष्य सारांश
enterface.faceitauditv2.com was observed hosting a generic phishing page that returned the title “Just a moment…”. The domain is currently offline, and its hosting infrastructure points to Cloudflare’s network (IP 172.67.179.157, AS13335, United States). The authoritative nameservers are leo.ns.cloudflare.com and nadia.ns.cloudflare.com, indicating the domain leveraged Cloudflare’s DNS and CDN services. Registration data show the domain was created on 31 August 2025 and was registered through Web Commerce Communications Limited, a registrar commonly used for short‑lived malicious sites. No TLS certificate was presented, confirming the lack of HTTPS protection.
Reputation services have flagged the domain. PhishDestroy lists it as blocked, and VirusTotal recorded nine detections out of ninety‑three scanners, demonstrating a moderate level of consensus among security vendors. Gridinsoft assigned a trust score of 0 / 100, and the domain appears on a single external blocklist. The combination of a low trust score, multiple vendor detections, and inclusion on a blocklist reinforces the conclusion that the domain was employed for phishing activity. Defenders should immediately add the domain and its resolving IP address to deny‑list rules across perimeter firewalls, DNS resolvers, and proxy filters.
Because the domain resolves to a shared Cloudflare address, additional monitoring of traffic to 172.67.179.157 is advised to detect any residual or future abuse that may reuse the same IP range. Continuous re‑query of VirusTotal and other reputation platforms is recommended to capture any new detections. Organizations that have previously observed similar phishing campaigns should review logs for connections to the domain or its IP during the active period and consider credential‑reset procedures for any accounts potentially exposed. The limited evidence available suggests the campaign is no longer active, but the underlying infrastructure remains viable for reuse.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
Registration: faceitauditv2.com
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain faceitauditv2.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।