btsellfy[.]sellfy[.]store
“Store Doesn't Exist”
btsellfy.sellfy.store — Não verificado. Resumo das evidências: VirusTotal 12/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 5 alerts; PhishDestroy score 88/100. Registrador: Go Daddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain btsellfy.sellfy.store was created on 21 February 2026 through Go Daddy, LLC and is currently taken offline. DNS resolution points to the IP address 3.214.66.127, which belongs to the Amazon.com, Inc. network (AS14618) and is geolocated in the United States. The authoritative name servers are kara.ns.cloudflare.com and will.ns.cloudflare.com, indicating Cloudflare DNS services. An HTTPS endpoint is served using a Let’s Encrypt certificate issued by the E7 intermediate, confirming the presence of a valid TLS layer despite the site’s offline status. Web‑server fingerprints reveal Nginx with the OpenResty module and client‑side libraries including jQuery. An HTTP request to the root path returns a 404 status code and the page title "Store Doesn't Exist," suggesting that the site no longer hosts active content.
Threat intelligence shows that the domain is listed on one security blocklist and has been blocked by the PhishDestroy feed. VirusTotal analysis recorded 11 detections out of 93 scanned security vendors, providing independent confirmation that the domain is associated with malicious activity. No further public threat feeds or Safe Browsing entries are referenced in the available data.
The observed indicators—recent registration, Amazon‑hosted IP, Cloudflare DNS, active TLS certificate, and multiple vendor detections—are consistent with a short‑lived phishing infrastructure that was likely used to host a fraudulent storefront before being shut down. The exact phishing campaign details, such as targeted brands or lure content, remain unknown because the page content is not available.
Defenders should continue to block the domain at perimeter defenses, ensure that any outbound connections to 3.214.66.127 are denied, and monitor for newly registered look‑alike domains that resolve to the same ASN or use similar naming patterns.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | btsellfy.sellfy.store |
malicious | Sinkholed |
| OpenDNS | btsellfy.sellfy.store |
phishing | Phishing Block |
| DNS4EU | btsellfy.sellfy.store |
malicious | Sinkholed |
| DNS0 Zero | btsellfy.sellfy.store |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | btsellfy.sellfy.store |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% de confiançaOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of btsellfy.sellfy.store · checked Mar 2, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo