jwsdytssuelegant[.]sellfy[.]store
“Store Doesn't Exist”
jwsdytssuelegant.sellfy.store — 未验证. 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 13/91 (alphaMountain.ai, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 6 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 98/100. 注册商: Go Daddy.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is classified as a high-risk credential harvesting phishing infrastructure. Analysis indicates it was designed to mimic legitimate login portals, likely targeting user credentials for financial or corporate accounts. The domain has since been taken offline, but its prior activity warrants close monitoring due to its sophisticated evasion tactics. Infrastructure analysis reveals the domain was registered through Go Daddy, LLC on February 21, 2026, and resolved to IP address 3.214.66.127 (AS14618, Amazon.com, Inc., US). It was flagged by 17 out of 95 security vendors on VirusTotal, with Google Safe Browsing marking it as phishing. The domain appears on two security blocklists (PhishDestroy and PhishingDB) and used a Let's Encrypt SSL certificate (serial number E7). Despite its current offline status, the page title 'Store Doesn't Exist' suggests an attempt to mislead users or mask its true purpose. Mitigation steps for this specific threat type include blocking the domain and its associated IP at the network perimeter, particularly for organizations with high-value credential assets. Security teams should review logs for connections to 3.214.66.127 or DNS queries for jwsdytssuelegant.sellfy.store prior to its takedown. End-user training should emphasize verifying domain legitimacy before entering credentials, especially for domains mimicking e-commerce or SaaS platforms. Monitoring for similar Let's Encrypt certificates or domains registered via Go Daddy with recent creation dates may help identify related infrastructure.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | jwsdytssuelegant.sellfy.store |
malicious | Sinkholed |
| OpenDNS | jwsdytssuelegant.sellfy.store |
phishing | Phishing Block |
| DNS4EU | jwsdytssuelegant.sellfy.store |
malicious | Sinkholed |
| Quad9 DNS | jwsdytssuelegant.sellfy.store |
malicious | Sinkholed |
| DNS0 Zero | jwsdytssuelegant.sellfy.store |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | jwsdytssuelegant.sellfy.store |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 3 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 置信度 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of jwsdytssuelegant.sellfy.store · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。