# goldenmaskclub.ru — MALICIOUS > goldenmaskclub.ru is a high-risk phishing domain now offline. Avoid visiting to protect your data from scams and identity theft. ## Summary PhishDestroy identifies goldenmaskclub.ru as a dangerous phishing domain that posed significant risks to users. Though currently offline, this site was flagged for attempting to deceive visitors into revealing sensitive information such as passwords, financial details, or personal data. Such fraudulent activity can lead to identity theft and financial loss. This phishing scheme worked by masquerading as a legitimate site to trick users into submitting confidential information. The domain was registered recently and appeared on security blocklists after multiple security vendors detected malicious behavior. While it resolved to a legitimate IP address, the primary threat stemmed from its deceptive intent and high-risk classification. If anyone visited goldenmaskclub.ru, it’s critical to immediately change any passwords entered and monitor financial accounts for unusual activity. Users should run a full malware scan and remain vigilant against suspicious emails or messages that may follow. Always verify website authenticity before submitting personal information to stay protected. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 0) - Page title: goldenmaskclub.ru ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Expires: 2026-11-02 00:00:00 - Registrar: FE-RU - Country: RU - IP: 217.29.62.235 - IP Country: RU - IP City: Moscow - IP Org: AS39238 OKB PROGRESS LLC - Nameservers: ns1.example.com ns1.nocsu.com ns1.nocsu.com. ns2.example.com ns2.nocsu.com ns2.nocsu.com. - SSL Issuer: Let's Encrypt / R12 ## Detection Status - VirusTotal: 10 vendors flagged Vendors: ["alphaMountain.ai", "Cluster25", "CRDF", "ESET", "Fortinet", "G-Data", "Gridinsoft", "Seclookup", "SOCRadar", "Sophos"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/881a5add-a7af-4ec8-8347-50b2c3538811.png - Cloudflare Radar: https://radar.cloudflare.com/scan/04a6ae25-5624-4deb-8fba-7eb4d8fb5bca - Wayback Machine: https://web.archive.org/web/https://goldenmaskclub.ru - PhishDestroy: https://phishdestroy.io/domain/goldenmaskclub.ru/ - LLM endpoint: https://phishdestroy.io/domain/goldenmaskclub.ru/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/goldenmaskclub.ru/ Last updated: 2026-03-19