facelilt[.]com
“FACEIT — революционная киберспортивная платформа для амбициозных игроков и профессионалов!”
facelilt.com has been identified as an active phishing domain posing as a legitimate cosmetic surgery provider. Current evidence indicates this site is distributing counterfeit Botox treatment offers to unsuspecting internet users. The domain is currently under active investigation following a report from PhishDestroy, a leading fraud prevention platform, which first flagged the domain as suspicious on April 16, 2025. This domain was flagged by 1 of 95 VirusTotal vendors as of the latest scan, indicating that traditional antivirus tools have not yet incorporated detection signatures for this threat. PhishDestroy blocked the domain on April 17, 2025. The site resolves to IP address 104.21.64.71, which is hosted on Cloudflare infrastructure. The domain facelilt.com was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on April 13, 2025—only three days prior to detection—indicating a very recent and opportunistic registration. The site currently appears on one public blocklist curated by PhishDestroy, underscoring limited but growing recognition as a malicious entity. Despite using a Google Trust Services SSL certificate, the site’s content and registration patterns strongly suggest fraudulent intent rather than legitimate operation. As of today, facelilt.com remains active and accessible to users who have not yet received updated threat intelligence. Given the high risk of financial fraud, identity theft, or exposure to counterfeit medical treatments, users are strongly advised to avoid visiting this domain entirely. If exposure has already occurred, users should scan their devices for malware using reputable antivirus software and monitor financial accounts for unauthorized transactions. Website administrators and cybersecurity teams should implement network-level blocking via DNS or firewall rules targeting the IP 104.21.64.71 and domain facelilt.com. Additionally, organizations are encouraged to update threat intelligence feeds with this domain to prevent future access and propagation. This domain should be treated as a confirmed fraudulent destination pending further investigation by law enforcement or cybersecurity authorities.
Запис надісланого повідомлення
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260327-E1E89D- Заголовок збереженої сторінки
- FACEIT — революционная киберспортивная платформа для амбициозных игроков и профессионалов!
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 джерел · синхронізовано 10.08.2026
Хронологія виявлення
Збережені спостереження у хронологічному порядку.
-
Доступність
Доступність: уперше зафіксовано як dns_inactive
f93a11f87e4d -
Доступність
Доступність: dns_inactive → unknown
104189c23da7 -
Доступність
Доступність: unknown → dns_inactive
dc98770e60c0 -
Доступність
Доступність: dns_inactive → inactive
e03596711a0b -
Доступність
Доступність: inactive → dns_inactive
f52d526b76a1 -
Доступність
Доступність: dns_inactive → unknown
ac618d8d11a7 -
Доступність
Доступність: unknown → inactive
96a5997ca751 -
Доступність
Доступність: inactive → unknown
8a2b329ee0b2 -
Доступність
Доступність: unknown → dns_inactive
6dfe9145995c -
Доступність
Доступність: dns_inactive → inactive
03593774c4ff
Показати всі (6)
-
Доступність
Доступність: inactive → dns_inactive
641ed81dc4d5 -
Доступність
Доступність: dns_inactive → unknown
16eb3107ba21 -
Доступність
Доступність: unknown → inactive
251a51fbbf21 -
Доступність
Доступність: inactive → unknown
b1290e47b50e -
Доступність
Доступність: unknown → dns_inactive
d0b7046e8c2f -
Доступність
Доступність: dns_inactive → inactive
cf9331e2fd48
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of facelilt.com · checked Mar 27, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога