nj[.]goumvcs[.]cc
nj.goumvcs.cc — Непроверенный. Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 14/91 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); PhishDestroy score 92/100. Регистратор: Dominet (HK).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain nj.goumvcs.cc was registered on September 27, 2025 through Dominet (HK) Limited, a registrar known for offshore registrations. Early detection by PhishDestroy resulted in its inclusion on one security blocklist, and a multi‑vendor scan on VirusTotal shows that 14 of 91 security engines have flagged the domain as malicious. This level of detection suggests that the site is being used for credential harvesting, consistent with the generic phishing classification provided in the intelligence feed.
No public SSL certificate information, HTTP response codes, or hosting IP details have been released, and automated crawlers have not published a page title or brand reference, leaving those aspects of the infrastructure unverified. The limited blocklist presence indicates that the domain is currently active but may not yet be widely propagated across global filter lists. Defenders should add nj.goumvcs.cc to local deny lists, monitor outbound traffic for connections to the domain, and enforce strict email filtering for messages that reference the domain or contain suspicious links.
Ongoing observation of threat‑intel feeds for additional detections, as well as periodic rescans on VirusTotal, will help track changes in the detection rate and potential expansion of the campaign. Until further evidence emerges, the recommendation is to treat any communications originating from or redirecting to nj.goumvcs.cc as hostile and to block them at the network perimeter.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание