kalleandresen-icloud-com.store
Appeared in the .store zone on Friday, September 4, 2026; by the end of that day the census found placeholder page. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
The name is constructed to read as a victim's Apple ID email address (kalleandresen@icloud.com) under a .store TLD, a classic Apple/iCloud brand-squat pattern; the live page is only a default Shopify 'Opening soon' storefront password placeholder with no iCloud content, so it is a squat/staging domain rather than an active phish.
Domain impersonates iCloud (kalleandresen-icloud-com.store) with a password form that posts to itself—a classic sealed-room phishing pattern. The generic 'My Store 2' template and Shopify branding are window dressing; the attack targets iCloud credentials by deceiving visitors into believing this is an Apple iCloud login page.
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Friday, September 4, 2026

Same data as JSON: /api/zone/domain/kalleandresen-icloud-com.store. This page is not indexed by search engines and does not link to the site it describes.