pc[.]gtcfxlgroup[.]cc
“GTCFX”
ملخص الأدلة
Analysis of pc.gtcfxlgroup.cc confirms its classification as a high-risk phishing domain targeting users associated with the GTCFX brand, as indicated by the page title and Google Safe Browsing's social engineering flag. The domain was registered on January 6, 2026, through Gname.com Pte. Ltd., and currently resolves to IP 172.67.173.68, hosted on Cloudflare's network (AS13335). Infrastructure analysis reveals the use of Cloudflare nameservers (eve.ns.cloudflare.com, hasslo.ns.cloudflare.com) and technologies including Ant Design, Vue.js, Cloudflare Browser Insights, and HTTP/3, suggesting a modern, potentially obfuscated phishing kit. The domain is flagged by 16 of 94 security vendors on VirusTotal, with additional detections from PhishDestroy, MetaMask, and SEAL blocklists.
Gridinsoft assigns a trust score of 0/100, further corroborating its malicious status. At the time of this report, the domain returns an HTTP 403 status, indicating it may have been taken offline or restricted by the hosting provider. It appears on three security blocklists, and Google Safe Browsing explicitly categorizes it as engaging in social engineering. Defenders should treat this domain as confirmed malicious and prioritize blocking it at the DNS and network levels.
The SSL certificate (WE1) and Cloudflare hosting are consistent with phishing campaigns leveraging CDN services to evade detection. While the exact content of the phishing pages is not yet analyzed, the combination of brand impersonation, low trust scores, and multi-vendor detections justifies immediate action. Organizations should monitor for related domains registered under the same registrar or using identical nameserver patterns, as these may indicate follow-up campaigns.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
0 ← 13
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
التقنيات
حُدّدت ٥ تقنيات عالية الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب