# goopentext.com — SUSPICIOUS > Goopentext.com is under investigation for phishing risks. Stay cautious and avoid sharing sensitive info until the domain is fully verified safe. ## Summary PhishDestroy has identified goopentext.com as an active domain associated with generic phishing activities. Although no direct detections have been reported by major antivirus engines, the domain’s suspicious characteristics warrant careful scrutiny. Users should remain vigilant as the investigation into its intent and behavior continues. The domain goopentext.com was registered recently on August 18, 2025, through the registrar Ultahost, Inc. Its IP address resolves to 162.0.215.46, which currently lacks any known reputable associations or positive reputation signals. VirusTotal scans show zero detections across all 95 security vendors, indicating that the domain has not yet been flagged by typical automated defenses. This lack of detection may be due to the domain’s newness or limited exposure but does not imply safety. At present, goopentext.com remains under active investigation by PhishDestroy analysts. Users are advised to exercise caution by refraining from interacting with or submitting personal information to this domain. Continued monitoring and threat intelligence gathering are recommended to determine if the domain will exhibit malicious payloads or phishing attempts. Organizations should consider blocking or quarantining traffic to this domain pending further confirmation. ## Threat Details - Verdict: SUSPICIOUS - Site status: alive (HTTP 200) - Page title: Go Open Text – Content Creation ## Domain Intelligence - Registered: 2025-08-18 13:00:07 - Registrar: Ultahost, Inc. - IP: 162.0.215.46 - Nameservers: dns1.namecheaphosting.com dns2.namecheaphosting.com ## Detection Status - VirusTotal: 1 vendors flagged Vendors: [] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://urlscan.io/screenshots/019d01d3-7249-74a9-b38f-61e020205ad5.png - Cloudflare Radar: https://radar.cloudflare.com/scan/c5c71b80-e47e-40fb-a89a-b9c089768122 - PhishDestroy: https://phishdestroy.io/domain/goopentext.com/ - LLM endpoint: https://phishdestroy.io/domain/goopentext.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/goopentext.com/ Last updated: 2026-03-19