Lompat ke laporan keamanan
Checked 09/08/2026 Ref 4B376AB7

MALICIOUS — CRITICAL

faceit-cs[.]ru

This domain, faceit-cs.ru, is identified as a generic phishing infrastructure designed to impersonate gaming platforms, likely targeting users of the FACEIT competitive gaming service.

80/100 evidence score · Critical
VirusTotal
5/91
Blocklists
No stored match
Ketersediaan
Terakhir diketahui aktif · HTTP 200
2026-04-15 21:58 UTCTerakhir diketahui aktif · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 5. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

faceit-cs.ru — Terakhir diketahui aktif (HTTP 200). Ringkasan bukti: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 80/100. Registrar: REGRU-RU.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Analysis

Ref 4B376AB7

This domain, faceit-cs.ru, is identified as a generic phishing infrastructure designed to impersonate gaming platforms, likely targeting users of the FACEIT competitive gaming service. Analysis indicates the site was constructed to harvest credentials or distribute malicious payloads under the guise of a legitimate gaming portal. No specific drainer kit signatures were detected in initial scans, but the presence of modern frontend frameworks suggests a polished social engineering attack rather than a low-effort scam page. Infrastructure analysis reveals multiple technical indicators of compromise. The domain was registered on April 15, 2026, through REGRU-RU, a registrar frequently associated with malicious activity. It resolves to the IP address 195.161.68.19 and uses a Let's Encrypt SSL certificate, which provides encryption but does not validate legitimacy. VirusTotal reports 5 out of 95 security vendors flagging the domain as malicious, while it appears on one additional security blocklist. The site employs React, AngularJS, and Yandex.Metrika, technologies consistent with sophisticated phishing operations aiming to evade detection and track victim interactions. As of the latest verification, faceit-cs.ru has been taken offline, likely in response to security reports or hosting provider intervention. While the immediate threat is mitigated, residual risk remains due to the domain's recent creation date and potential for reactivation. Users who interacted with the site should assume credential exposure and initiate password resets on associated gaming accounts. Network administrators are advised to block the domain and IP at perimeter defenses to prevent accidental access during potential future uptime. The elevated risk level is maintained due to the domain's technical sophistication and targeted nature, despite its current offline status.

VirusTotal
VirusTotal
5 det.
URLQuery
URLQuery
1 threat alert
URLScan
URLScan
Sertifikat TLS
Let's Encrypt
Usia
4 mo
Status terpantau
Terakhir diketahui aktif 200
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal 5 / 91 URLQuery 1 threat-system alert PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS 12 diperiksa — tidak ada blokir TLS valid certificate, 72d WHOIS 4 mo old Tangkapan layar 2 captures · 2 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU faceit-cs.ru malicious Sinkholed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
10/12

Status Daftar Blokir Publik

Tangkapan tersimpan

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN Apache · AS8342 JSC RTComm.RU
Reputasi IP abuse score 0/100 0 reports checked 13/07/2026
Registrar REGRU-RU RU(RU)
Alamat IP 195.161.68.19 RU
LokasiRU Irkutsk, RU
JaringanAS8342 · RTCOMM
PendaftaranDibuat 15/04/2026 (115d)
Elapsed Since First Report 7 days
Yang kami hitung Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Terakhir diketahui aktif.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Status HTTP200
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi15/04/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://faceit-cs.ru/
Server namans1.jino.runs1.jino.ru.ns2.jino.runs2.jino.ru.ns3.jino.runs3.jino.ru.ns4.jino.runs4.jino.ru.
TLS Fingerprint
TLS Observationvalid from 09/04/2026scanned 16/04/2026
TLS SAN Domainswww.faceit-cs.ru
Favicon Hash
Judul Halaman
faceit-cs.ru
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Let's Encrypt · valid for 72 days
Teknologi · 4 identified
React
JavaScript frameworks

JavaScript library for building user interfaces with component-based architecture.

Apache HTTP Server
Web servers

Most widely used open-source HTTP server software.

AngularJS

TypeScript-based SPA framework maintained by Google.

Yandex.Metrika
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

5 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed First positive detection Previous stored snapshot: 5 detections
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Gridinsoft
SOCRadar
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of faceit-cs.ru · checked Jun 26, 2026

79
Needs Work
Performance
FCP
3.46s
First Contentful Paint
LCP
4.21s
Largest Contentful Paint
CLS
0.029
Cumulative Layout Shift
TBT
9ms
Total Blocking Time
SI
3.46s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/faceit-cs.ru"
  title="PhishDestroy threat report for faceit-cs.ru"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>