Highscore 54 · flagged Friday, August 28, 2026

httpsadminshopifycomstoreni10w2f1settingsdomainsusa.store

Appeared in the .store zone on Friday, August 28, 2026; by the end of that day the census found other. Full domain report

Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.

Own one of these names and think the listing is wrong? Tell us and a person will look.

What matched

brand in the name
matched: shopify
+14
very long name
matched: 51
+4
brand plus digits
matched: httpsadminshopifycomstoreni10w2f1settingsdomainsusa
+8
brand name at a retail registrar
matched: Namify Domains Inc
+8
brand in page title, not in the name
matched: cloudflare
+20
Registrar
Namify Domains Inc
Nameserver provider
Nameservers
getstore.mars.orderbox-dns.com, getstore.venus.orderbox-dns.com
First-day state
other
HTTP status
409
Page title
DNS resolution error | httpsadminshopifycomstoreni10w2f1settingsdomainsusa.store | Cloudflare
Has a form
no
Brand echoed
shopify

Model opinions

Second opinionlooks like abusetarget: Shopifyconfidence 82%· claude-opus-5

The domain is a URL-lookalike squat that reproduces a real Shopify admin path ('https://admin.shopify.com/store/ni10w2f1/settings/domains') as a hostname under .store; the site itself serves only a Cloudflare Error 1001 DNS resolution page, so there is no deceptive content yet, but the only plausible purpose of such a name is to make a spoofed Shopify admin link look genuine.

First passlooks like abuseconfidence 85%· claude-haiku-4-5

The domain is a clear typosquat of Shopify's admin panel URL (httpsadminshopifycomstoreni10w2f1settingsdomainsusa) designed to deceive visitors into believing they are accessing Shopify settings. The page currently shows a Cloudflare DNS error (a hosting placeholder), but the domain name itself is a constructed impersonation meant to capture credentials when properly configured. This is squat abuse rather than active phishing at this moment, but the infrastructure and intent are evident.

A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.

What the page looked like on Friday, August 28, 2026

Screenshot of httpsadminshopifycomstoreni10w2f1settingsdomainsusa.store taken by the zone census on 2026-08-28

Same data as JSON: /api/zone/domain/httpsadminshopifycomstoreni10w2f1settingsdomainsusa.store. This page is not indexed by search engines and does not link to the site it describes.