gfhtyyriiifabulous[.]sellfy[.]store
“Store Doesn't Exist”
gfhtyyriiifabulous.sellfy.store — Неперевірений. Зведення доказів: VirusTotal 11/91 (Criminal IP, alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 88/100. Реєстратор: Go Daddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of gfhtyyriiifabulous.sellfy.store shows a newly registered domain created on 21 February 2026 that is currently taken offline, returning a 404 HTTP status with the page title “Store Doesn't Exist.” The site was hosted on Amazon's AS14618 network, resolving to the IP address 3.214.66.127 located in the United States. Infrastructure fingerprints reveal an Nginx/OpenResty web server stack with jQuery present, and the TLS certificate was issued by Let’s Encrypt (E7), indicating a legitimate‑looking HTTPS endpoint. Domain registration was performed through Go Daddy, LLC, and DNS is delegated to Cloudflare nameservers (kara.ns.cloudflare.com and will.ns.cloudflare.com).
The domain appears on a single security blocklist, specifically PhishDestroy, confirming that at least one phishing‑focused feed has flagged the host. VirusTotal scans show that 11 of 93 antivirus and URL‑reputation engines flagged the domain, providing additional corroboration of malicious intent. No public evidence of the actual phishing page content is available beyond the generic “Store Doesn't Exist” title, and the site’s current offline state prevents further payload observation.
Defenders should add the domain to internal block lists, monitor the associated IP range for other potentially related activity, and enforce DNS filtering for the Cloudflare name servers that resolve this host. Continuous re‑evaluation is advised in case the domain is reactivated, as the existing evidence—registration date, blocklist inclusion, VirusTotal detections, and infrastructure characteristics—strongly suggests it was used for a phishing store operation.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
| Quad9 DNS | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
| DNS0 Zero | gfhtyyriiifabulous.sellfy.store |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of gfhtyyriiifabulous.sellfy.store · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога