fl[.]goumah[.]cc
“goumah.cc | 520: Web server is returning an unknown error”
fl.goumah.cc — असत्यापित. ब्रांड प्रतिरूपण: Govfl; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 15/91 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 95/100. रजिस्ट्रार: Dominet (HK).
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain fl.goumah.cc was registered on June 12, 2026 through Dominet (HK) Limited. It currently resolves to the IPv4 address 172.67.202.182, a host that is also associated with at least one public security blocklist. The domain is classified as an active generic phishing infrastructure with an elevated risk rating. VirusTotal has recorded detections from 15 of 91 scanned security vendors, indicating that a substantial minority of AV engines flag the host as malicious. Independent block‑list services have already added the domain to their deny lists; PhishDestroy specifically lists it as blocked, confirming that the domain is being actively filtered by anti‑phishing tools.
Evidence shows that the domain’s operational timeline is short, having been created only weeks before the report date of July 29, 2026. The rapid appearance of multiple vendor detections suggests that threat actors deployed the domain in a coordinated campaign rather than as a one‑off test. The lack of publicly available SSL certificate details, HTTP response codes, or page‑title information limits the ability to assess the exact payload or credential‑harvesting technique employed. Likewise, no open‑source intelligence sources such as OTX or similar have published additional indicators of compromise for this host at the time of writing.
Defenders should prioritize adding 172.67.202.182 and the fully qualified domain name fl.goumah.cc to their DNS and endpoint block lists. Monitoring for DNS queries to the domain and for outbound connections to the associated IP can help detect compromised clients. Because the domain is already listed by PhishDestroy, integrating that feed into existing web‑gateway solutions will provide immediate protection. Ongoing threat‑intel collection is recommended to capture any future changes to the hosting environment, additional payload drops, or related command‑and‑control infrastructure that may emerge as the campaign evolves.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।