الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 12. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

go[.]goufax[.]com

حكم التهديد حرجة 88/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 12/91 Spamhaus DBL: DBL_PHISH
07/08/2026 CDN

ملخص الأدلة

حرج
Evidence score
88/100

On 7 August 2026 the domain go.goufax.com was identified as part of an active generic phishing campaign with an elevated risk rating. VirusTotal reports that 12 of 91 scanned security vendors flag the domain as malicious, indicating a moderate consensus among scanners. The domain appears on a single public blocklist and is actively blocked by the PhishDestroy mitigation service, demonstrating that at least one anti‑phishing provider has taken protective action. DNS resolution points to the IPv4 address 64.7.198.11, which constitutes the sole visible hosting artifact in the current intelligence set. No additional infrastructure such as ASN, hosting provider, or SSL certificate details are disclosed in the available data.

The limited detection footprint suggests that the campaign may be in an early deployment stage or that the operators are using a minimal infrastructure footprint to evade large‑scale attribution. Defenders should prioritize ingesting the domain into network‑level blocklists and configure DNS filtering to deny resolution of go.goufax.com. Correlation of the observed IP address with internal logs may reveal compromised endpoints or malicious outbound connections. Continuous monitoring of VirusTotal and other multi‑engine scanners is advised to capture any changes in detection rates, which could indicate payload evolution or broader distribution. Because the domain is flagged by PhishDestroy, integration with that service’s feed can provide automated mitigation.

Organizations that employ external email gateways should update phishing‑detection rules to include the domain and its associated IP. Given the elevated risk rating, threat‑hunting teams should also search for related command‑and‑control traffic patterns or credential‑stealing activity that could be linked to the same IP address. At present, the absence of publicly available registrar or creation‑date information limits the ability to attribute ownership or assess longevity.

VirusTotal
VirusTotal
12 det.
شهادة TLS
Let's Encrypt
العمر
3 mo New
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مدرج

Data Coverage

VirusTotal 12 / 91 URLQuery لم يتم التحقق منها PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 78d WHOIS 3 mo old لقطة شاشة 4 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكاتRegistrar context
Registrar context Trustname
Stored registration data identifies Trustname / Fewmoretaps OÜ (IANA 4318) as the registrar. PhishDestroy maintains a separate registrar investigation; that material is contextual and is not an independent detection for this domain.
Trustname Investigation

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
10/12

تغطية قوائم الحظر

١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026

١٠ مصادر خارجية مراقبة لا تطابق

لقطة محفوظة

شهادة TLS
Valid transport encryption · صادرة عن Let's Encrypt · valid for 78 days

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing report ↗
الخادم / ASN cloudflare · AS13335 CLOUDFLARENET - Cloudflare, Inc., US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
Registrar (base domain) Fewmoretaps OU d/b/a T… BY(BY) PhishDestroy Investigation
جهة الإبلاغ عن إساءة الاستخدامabuse@trustname.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ goufax.com →
عنوان IP 64.7.198.11 CDN
الموقع الجغرافيRO Bucharest, RO
الشبكةAS13335 · AS399629 BL Networks
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Registration (base domain)goufax.com · تم إنشاؤه 25/05/2026 (79d · New) Expires 25/05/2027
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف07/08/2026
DOM Analysisanalyzed 07/08/2026DOM analysis score 88/100
Submitted URLhttps://go.goufax.com/
خوادم الأسماءcarter.ns.cloudflare.comryleigh.ns.cloudflare.com
رصد TLSفُحص في 08/08/2026
ICANN OVERSIGHT Registration: goufax.com

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain goufax.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

12 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
alphaMountain.ai
BitDefender
CRDF
ESET
Fortinet
G-Data
كاسبرسكي
LevelBlue
Lionic
نتكرافت
سوفوس
VIPRE
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of go.goufax.com · checked Aug 7, 2026

38
Poor
Performance
FCP
2.15s
First Contentful Paint
LCP
34.66s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
2718ms
Total Blocking Time
SI
6.38s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/go.goufax.com"
  title="PhishDestroy threat report for go.goufax.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.