gfhtyyriiifabulous[.]sellfy[.]store
“Store Doesn't Exist”
gfhtyyriiifabulous.sellfy.store — لم يتم التحقق منها. ملخص الأدلة: VirusTotal 11/91 (Criminal IP, alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 88/100. مسجّل النطاق: Go Daddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of gfhtyyriiifabulous.sellfy.store shows a newly registered domain created on 21 February 2026 that is currently taken offline, returning a 404 HTTP status with the page title “Store Doesn't Exist.” The site was hosted on Amazon's AS14618 network, resolving to the IP address 3.214.66.127 located in the United States. Infrastructure fingerprints reveal an Nginx/OpenResty web server stack with jQuery present, and the TLS certificate was issued by Let’s Encrypt (E7), indicating a legitimate‑looking HTTPS endpoint. Domain registration was performed through Go Daddy, LLC, and DNS is delegated to Cloudflare nameservers (kara.ns.cloudflare.com and will.ns.cloudflare.com).
The domain appears on a single security blocklist, specifically PhishDestroy, confirming that at least one phishing‑focused feed has flagged the host. VirusTotal scans show that 11 of 93 antivirus and URL‑reputation engines flagged the domain, providing additional corroboration of malicious intent. No public evidence of the actual phishing page content is available beyond the generic “Store Doesn't Exist” title, and the site’s current offline state prevents further payload observation.
Defenders should add the domain to internal block lists, monitor the associated IP range for other potentially related activity, and enforce DNS filtering for the Cloudflare name servers that resolve this host. Continuous re‑evaluation is advised in case the domain is reactivated, as the existing evidence—registration date, blocklist inclusion, VirusTotal detections, and infrastructure characteristics—strongly suggests it was used for a phishing store operation.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
| Quad9 DNS | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
| DNS0 Zero | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of gfhtyyriiifabulous.sellfy.store · checked Mar 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب