Vai al rapporto di sicurezza
Checked 09/08/2026 Ref 1C44596D

MALICIOUS — HIGH

Verifica phishing e sicurezza per facelees.cc

facelees[.]cc

PhishDestroy identifies facelees.cc as an active generic-phishing domain designed to trick users into entering sensitive credentials.

56/100 evidence score · High
VirusTotal
2/94
Blocklists
No stored match
Disponibilità
Non verificato
Report / Add Evidence Appeal this listing
2026-03-26 23:55 UTCNon verificato

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Questo dominio è stato segnalato come dannoso
Motori di sicurezza che segnalano un rilevamento: 2. Prestare estrema cautela: non inserire credenziali o informazioni personali.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@clodocloud.com. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
4 months
Reports sent
1
Latest case ID
PD-20260326-B865EF
Current status
Observed active at latest stored check
Jump to section
Riepilogo del rapporto

facelees.cc — Non verificato. Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 2/94 (alphaMountain.ai, Forcepoint ThreatSeeker); Spamhaus DBL_SPAM; PhishDestroy score 56/100. Registrar: NiceNIC.

L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.

Evidence Analysis

Ref 1C44596D

PhishDestroy identifies facelees.cc as an active generic-phishing domain designed to trick users into entering sensitive credentials. The site masquerades as a legitimate login portal while harvesting usernames and passwords for later misuse. Because the domain resolves to IP address 45.114.61.245 and relies on a Let’s Encrypt SSL certificate to appear trustworthy, victims may not realize they are submitting data to criminals. This domain was flagged by exactly 2 out of 95 VirusTotal security vendors, registered on July 23, 2022, and is currently managed through NICENIC INTERNATIONAL GROUP CO., LIMITED. These indicators align with a pattern seen in short-lived phishing campaigns that rapidly deploy and then disappear to evade takedowns. The combination of a recent creation date and low but non-zero detection rate suggests ongoing but still-evolving abuse. If you visited facelees.cc, stop using any credentials you may have entered and immediately change those passwords on a separate, trusted device. Run a full antivirus scan and consider enabling multi-factor authentication on all accounts that still allow it. Report the domain to your email provider, browser vendor, and the hosting provider’s abuse team so the site can be blocked for others.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
2 det.
URLScan
URLScan
Certificato TLS
Let's Encrypt
Età
5 mo
Stato osservato
Non verificato
PhishDestroy
Elenco da eliminare
In elenco
Reports Sent
1
Copertura dei dati12 recorded checks
VirusTotal 2 / 94 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture rapporto memorizzato URLScan verdict Analisi completata Blocchi DNS 10 verificato — nessun blocco TLS valid certificate, 45d WHOIS 5 mo old Screenshot 3 captures · 3 sources Catena di reindirizzamenti non sondato
Informazioni sulla sicurezza di rete Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Pipeline di risposta alle minacce

Scoperta
Checks
Reports
Disponibilità
11/12
Minaccia rilevata
facelees.cc rilevati e inseriti in coda per un’analisi completa
27/03/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
Analisi URLScan completata; questo risultato di acquisizione web non cambia il verdetto sulla minaccia della pagina · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
2/94 recorded on VirusTotal
18/07/2026
Google Safe Browsing
27/03/2026
Registrar Context: NiceNIC
Separate registrar research is available. Registrar association is contextual and is not scored as an independent detection.
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
Il report contiene tecnologia archiviata o risultati di analisi forensi.
09/08/2026
Sent Report Recorded
Stored sent-report record for registrar NICENIC INTERNATIONAL GROUP CO., LIMITED, hosting provider, 2 abuse contacts
abuse@clodocloud.comabuse@nicenic.net
26/03/2026
DestroyList pubblicato
27/03/2026
Disponibilità non verificata
La risposta più recente non è sufficiente per classificare la disponibilità attuale.

Stato della lista di blocco pubblica

Acquisizione salvata

Analisi dei domini

Dominio
URLScan Verdict Analisi completata score 0 report ↗
Server / ASN nginx · AS216154 CLODO CLOUD SERVICE CO. L.L.C
Reputazione IP abuse score 0/100 0 reports checked 14/07/2026
Indirizzo IP 45.114.61.245 NL
PosizioneNL Amsterdam, NL
ReteAS216154 · RAY ONN India Communicationss Private Limited
RegistrazioneCreato 26/03/2026 (135d)
Elapsed Since First Report 24h
Cosa conteggiamo Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Non verificato.
Cosa contiene ogni rapporto I record archiviati dei report in uscita possono fare riferimento a prove disponibili in quel momento, come verdetti dei fornitori, dati di registrazione, dettagli di hosting, classificazioni o screenshot. Questa pagina non deduce l'esatto carico utile consegnato, la ricevuta, la conferma o l'azione da parte di un destinatario.
Dettagli tecniciDNS, SAN SSL, timestamp
Rilevato per la prima volta27/03/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://facelees.cc/
Nameserverns2.my-ndns.com
TLS Fingerprint
TLS Observationvalid from 12/04/2026scanned 23/04/2026
TLS SAN Domainswww.facelees.cc
Case ID
Titolo della pagina
FACELESS CC - Login
Certificato TLS
Valid transport encryption · Emesso da Let's Encrypt · valid for 45 days

Latest Classified Outcome 2026-08-09 02:52:42 UTC

Primary outcome Sconosciuto reason: Probe Inconclusive 20% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Unreachable Content: Unknown DNS: Resolved Registration: Active
Latest HTTP observation Sconosciuto Probe Inconclusive 20% 2026-08-09 02:52:42 UTC
RDAP registration Attivo NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientTransferProhibited expires 2027-07-23 20:37:21 UTC checked 2026-08-05 18:57:16 UTC
Observed timeline last reachable: 2026-08-08 22:14:53 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
Tecnologie · 7 identified
PHP
Programming languages

Server-side scripting language designed for web development.

Yii
Bootstrap
UI frameworks

Popular CSS framework for responsive, mobile-first web development.

Nginx
Web servers Reverse proxies

High-performance HTTP server and reverse proxy, known for stability and low resource usage.

jQuery UI

Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

Clipboard.js
Detected via Cloudflare Radar · Wappalyzer engine
Segnala questo dominio Invia le prove e contribuisci a proteggere gli altri

Analisi di VirusTotal

2 / I fornitori di sicurezza 94 hanno contrassegnato questo dominio
View on VT
Last analyzed
alphaMountain.ai
Forcepoint ThreatSeeker
Analisi delle prestazioni del sito

Google PageSpeed Insights — mobile performance audit of facelees.cc · checked Mar 27, 2026

93
Good
Performance
FCP
1.68s
First Contentful Paint
LCP
2.33s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
15ms
Total Blocking Time
SI
5.27s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.

Europol
Trova il canale di segnalazione ufficiale per il tuo paese dell'UE
National police directory
Attenzione ai truffatori che promettono il recupero dei fondi! I criminali possono contattare nuovamente le vittime fingendo di essere investigatori, avvocati o agenti di recupero. Non pagare commissioni anticipate né condividere credenziali. Scopri di più sulle frodi relative ai sussidi di recupero →

Segnalalo alle autorità locali

Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.

Elenco di 97 paesi
Bozza assistita dall'intelligenza artificiale: i dettagli dell'incidente vengono elaborati dal fornitore di intelligenza artificiale Controllalo e invialo tu stesso
Incorpora questo rapportoRead-only HTML widget
HTML · IFRAME

Incorpora questo rapporto

Condividi queste informazioni sulle minacce sul tuo sito web o sul tuo blog

embed.html
<iframe
  src="https://phishdestroy.io/it/embed/domain/facelees.cc"
  title="PhishDestroy threat report for facelees.cc"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>