khailjstore[.]com
“الخليج ستور - الصفحة الرئيسية”
khailjstore.com — Conteúdo indisponível (HTTP 502). Representação da marca: ["whatsapp"]; Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 0/94; PhishDestroy score 48/100. Registrador: Namecheap.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis indicates that the domain www.khailjstore.com was registered on 18 April 2026 through Namecheap Inc. The domain resolves to the IPv4 address 178.239.115.115, which Geo‑IP maps to the United Arab Emirates. The authoritative name servers are dns1.registrar-servers.com and dns2.registrar-servers.com, and the site was served over HTTPS using a Let’s Encrypt certificate (R12). The web server identified by banner analysis is Apache HTTP Server, with front‑end libraries including Bootstrap, jQuery, jQuery UI, Moment.js, Polyfill, Sift, and crypto‑js. The page title observed in the HTTP response is “الخليج ستور – …”, encoded in HTML entities.
The domain is currently listed as offline, and it has been added to a single security blocklist and actively blocked by the PhishDestroy feed. Gridinsoft assigns a trust score of 0 / 100, indicating an extremely low confidence rating. VirusTotal scanned the site with 94 antivirus engines and reported no detections; however, the lack of detections does not constitute proof of legitimacy.
The limited evidence suggests the domain is being used for a generic phishing operation, though the exact victim targeting and payload details remain unknown. Defenders should continue to block the domain at network perimeters, monitor DNS queries for the associated IP and name‑server pairs, and add the domain to local threat intelligence lists. Ongoing surveillance of the IP reputation and any future re‑activation of the site is recommended, alongside periodic re‑scans with multiple sandbox services to capture potential malicious behavior if the site returns online.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias · 8 identified
Popular CSS framework for responsive, mobile-first web development.
Most widely used open-source HTTP server software.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo