fl[.]goumvcz[.]cc
“goumvcz.cc | 520: Web server is returning an unknown error”
fl.goumvcz.cc — Não verificado. Representação da marca: Govfl; Tipo de golpe: Impersonation. Resumo das evidências: VirusTotal 13/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 89/100. Registrador: Dominet (HK).
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
fl.goumvcz.cc was registered on 12 June 2026 through Dominet (HK) Limited. The domain resolves to the IPv4 address 188.114.97.3, an address that is currently listed on a public security blocklist and is actively blocked by the PhishDestroy service. VirusTotal has recorded detections from 13 of 91 scanning engines, indicating that a subset of security products consider the domain malicious. The presence on a blocklist and the multi‑engine detections suggest that the domain is being used for malicious campaigns, although the specific payload or targeted brand has not been publicly disclosed.
The limited age of the domain—less than two months at the time of this report—combined with the rapid appearance on a blocklist aligns with typical patterns observed for newly created phishing infrastructure. The hosting provider for the IP address is not directly identified in the supplied data, and no SSL certificate details, HTTP response codes, or page title information have been released, leaving the surface‑web characteristics of the site unknown. Consequently, analysts cannot confirm the exact content served, the credential‑harvesting technique employed, or any secondary command‑and‑control infrastructure that might be associated. Defenders should prioritize adding 188.114.97.3 to network‑level deny lists and ensure that any DNS resolvers employed by the organization block fl.goumvcz.cc.
Email security gateways should be updated to flag messages containing links to this domain, and endpoint protection solutions should be instructed to treat detections from the 13 reporting vendors as high confidence indicators of compromise. Continuous monitoring of VirusTotal and other reputation services for changes in detection counts is recommended, as additional detections may reveal the underlying phishing kit or targeted brand. Organizations that observe any authentication attempts to fl.goumvcz.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo