faceit[.]eng-vertexclub[.]com
“FACEIT Cloud Events”
faceit.eng-vertexclub.com — Неперевірений. Уособлення бренду: Across; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, Cluster25, CRDF); PhishDestroy score 95/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for elevated-risk brand impersonation, specifically targeting gaming and cloud event platforms under the guise of legitimate services. The infrastructure mimics trusted environments to deceive users into disclosing credentials or downloading malicious payloads, a tactic commonly observed in credential harvesting campaigns. Analysis indicates the domain faceit.eng-vertexclub.com was registered on December 31, 2025, through NiceNIC International Group Co., Limited. It resolves to the IP address 87.249.38.179, located within the RU region under AS9123 (JSC TIMEWEB). At the time of assessment, the domain lacked an SSL certificate, a red flag for fraudulent activity. Detection engines on VirusTotal flagged the domain in 17 out of 95 scans, while security blocklists such as PhishDestroy and PhishingDB have included it in their databases, contributing to its presence on two distinct blocklists. The page title, 'FACEIT Cloud Events,' further reinforces the impersonation of a legitimate gaming platform. Mitigation for this threat involves immediate domain takedown requests to registrars and hosting providers, particularly those associated with the identified IP range. Organizations should update internal blocklists to include the domain and its resolving IP, while security teams are advised to monitor for similar impersonation patterns, such as newly registered domains with gaming-related keywords. End-users should be educated on verifying domain authenticity and SSL certificate validity before interacting with cloud event or gaming-related pages. Proactive monitoring of newly registered domains under registrars like NiceNIC can help preempt similar campaigns.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: eng-vertexclub.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain eng-vertexclub.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 02:41:13 UTC
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога