fl[.]goumk[.]cc
“goumk.cc | 520: Web server is returning an unknown error”
Зведення доказів
fl.goumk.cc is an active generic phishing infrastructure first observed on June 12, 2026. The domain resolves to the IPv6 address 2606:4700:3034::6815:1902, which is hosted by a Cloudflare edge network. Registration records show the domain was registered through Dominet (HK) Limited, a Hong Kong‑based registrar. VirusTotal reports that 14 of 91 scanned security vendors classify the domain as malicious, indicating a moderate consensus among scanners.
The domain is listed on one public security blocklist and has been explicitly blocked by the PhishDestroy feed, reinforcing its malicious reputation. The threat profile is marked as elevated risk and the campaign remains active as of the report date, July 29, 2026. Evidence beyond the registration and detection data is currently lacking; no public page title, SSL certificate details, or HTTP response information have been published. Consequently, the exact lure or target brand employed by the site cannot be confirmed at this time.
Analysts should treat the domain as a credential‑harvesting vector until more detailed forensic artifacts become available. Defenders are advised to add fl.goumk.cc to deny‑list or firewall block rules, monitor outbound connections for attempts to resolve the IPv6 address, and ensure that endpoint detection components are updated to include the 14 vendor signatures that flag the domain. Network sensors should be configured to alert on DNS queries for the domain, and any user‑initiated traffic to the associated IP should be terminated. Continuous re‑evaluation is recommended, as further intelligence such as page content or malware payloads may emerge.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Статус домену
Доступний → Недоступний
-
Статус домену
Недоступний → Доступний
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога