MALICIOUS — CRITICAL
faceit-cs[.]ru
This domain, faceit-cs.ru, is identified as a generic phishing infrastructure designed to impersonate gaming platforms, likely targeting users of the FACEIT competitive gaming service.
- VirusTotal
- 5/91
- Blocklists
- No stored match
- Ketersediaan
- Terakhir diketahui aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
faceit-cs.ru — Terakhir diketahui aktif (HTTP 200). Ringkasan bukti: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 80/100. Registrar: REGRU-RU.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
This domain, faceit-cs.ru, is identified as a generic phishing infrastructure designed to impersonate gaming platforms, likely targeting users of the FACEIT competitive gaming service. Analysis indicates the site was constructed to harvest credentials or distribute malicious payloads under the guise of a legitimate gaming portal. No specific drainer kit signatures were detected in initial scans, but the presence of modern frontend frameworks suggests a polished social engineering attack rather than a low-effort scam page. Infrastructure analysis reveals multiple technical indicators of compromise. The domain was registered on April 15, 2026, through REGRU-RU, a registrar frequently associated with malicious activity. It resolves to the IP address 195.161.68.19 and uses a Let's Encrypt SSL certificate, which provides encryption but does not validate legitimacy. VirusTotal reports 5 out of 95 security vendors flagging the domain as malicious, while it appears on one additional security blocklist. The site employs React, AngularJS, and Yandex.Metrika, technologies consistent with sophisticated phishing operations aiming to evade detection and track victim interactions. As of the latest verification, faceit-cs.ru has been taken offline, likely in response to security reports or hosting provider intervention. While the immediate threat is mitigated, residual risk remains due to the domain's recent creation date and potential for reactivation. Users who interacted with the site should assume credential exposure and initiate password resets on associated gaming accounts. Network administrators are advised to block the domain and IP at perimeter defenses to prevent accidental access during potential future uptime. The elevated risk level is maintained due to the domain's technical sophistication and targeted nature, despite its current offline status.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | faceit-cs.ru |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 4 identified
JavaScript library for building user interfaces with component-based architecture.
Most widely used open-source HTTP server software.
TypeScript-based SPA framework maintained by Google.
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of faceit-cs.ru · checked Jun 26, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.