Gridinsoft 在 Stealtho.store 上观察到的情况
Gridinsoft 威胁分析师直接检查了该网站,并记录了支持此决定的证据。
GMA-20260903030713-d923a281
- 检查时间
- 由 Gridinsoft 威胁分析师 完成
- 分析师结论
- 安全
- 证据依据
- 第一方网站分析 外部安全厂商情报: 存在矛盾的背景信息——未用于本次决定
当前独立第一方审查支持将 stealtho.store 裁定为安全。所审查的公开入口和商店功能提供了声明的 STEALTHO 商店,直接导航始终停留在该网站,且未复现精确的恶意 URL、文件、payload、钓鱼流程、exploit、有害目的地或自动有害下载。此前宽泛的“可疑网站”类别没有当前、具体的有害对象作为依据。
分析师结论
本次检查记录了 7 项观察
查看证据
HTTPS 根页面返回了所声明的 STEALTHO 办公用品商店。所审查的根页面、商店、购物车、checkout、robots、sitemap 和 WordPress API endpoint 均提供同站点商店或服务内容,未最终重定向到无关网站。
-
HTTP 状态
200 -
最终 URL
https://stealtho.store/ - 页面元素 STEALTHO® | Office Chair Wheels, File Organizers & Docking Stations
- 分析师观察 The reviewed public content described the same office-chair wheels, file organizers, docking stations, and related articles across the sampled store surface.
- 分析师观察 No reviewed response initiated an automatic executable or archive download.
HTTP 和 www 变体均规范化到根域名的 HTTPS 商店。重复直接请求未产生 STEALTHO 网站之外的目的地。
-
重定向目标
http://stealtho.store/ -> https://stealtho.store/ -
重定向目标
https://www.stealtho.store/ -> https://stealtho.store/ -
HTTP 状态
200 - 分析师观察 The final host remained stealtho.store for the apex and www entry points.
抽样的商店、购物车和 checkout 路由返回一致的 WordPress/WooCommerce 商店界面。在所审查的公开响应中,未发现无关的凭证接收方、recovery phrase 请求、远程访问指令或有害执行命令。
-
HTTP 状态
200 -
最终 URL
https://stealtho.store/checkout/ - 分析师观察 No purchase, payment, login, or form submission was performed.
- 分析师观察 The reviewed public HTML loaded ordinary store and analytics resources and did not contain PowerShell, cmd.exe, mshta, rundll32, regsvr32, certutil, wscript, or cscript instructions.
无关域名 wird.com.ua 当前将其根入口和 www 入口重定向到 STEALTHO 商店。其 DNS 解析到独立的托管基础设施,因此所观察到的是第三方入站重定向,而不是 stealtho.store 发起的出站重定向。
-
重定向目标
https://wird.com.ua/ -> https://stealtho.store/ -
重定向目标
https://www.wird.com.ua/ -> https://stealtho.store/ - DNS 信息 wird.com.ua and www.wird.com.ua resolved to hosting addresses different from stealtho.store
- 分析师观察 No reviewed stealtho.store response linked or redirected back to wird.com.ua.
根主机和 www 主机解析到同一个 OVH 托管服务,并出示了覆盖这两个名称的当前有效 TLS 证书。
- DNS 信息 stealtho.store and www.stealtho.store resolved to 51.222.43.200 and 2607:5300:203:7dc8::1
- DNS 信息 Authoritative nameservers were ns11.inhostedns.com, ns21.inhostedns.net, and ns31.inhostedns.org
- 证书信息 The reviewed certificate covered stealtho.store and www.stealtho.store and was valid at the recorded review time
公开档案索引包含从 2018 年 2 月到 2026 年 8 月的成功商店快照。所审查的 2018、2024 和 2026 年 8 月 25 日快照均持续描述 STEALTHO 办公椅轮、收纳产品及相关商品,而非无关诱饵。
- 公开证据 URL https://web.archive.org/web/20180226160049id_/https://stealtho.store/
- 公开证据 URL https://web.archive.org/web/20240110210838id_/https://stealtho.store/
- 公开证据 URL https://web.archive.org/web/20260825215813id_/https://stealtho.store/
- 分析师观察 Archive continuity supports the stated long-running store identity but was not treated as proof that every historical or future URL is safe.
当前审查未在所检查的 STEALTHO 范围内识别出精确的恶意路径、malware 文件、payload、hash、钓鱼页面、exploit 流程、有害外部目的地或自动有害下载。
- 分析师观察 The adverse evidence available for the exact host was a broad domain blacklist or reputation category rather than a reproducible harmful object.
- 分析师观察 The absence of an identified object is limited to the public scope and review time stated in this record.
范围与限制
- 本次审查涵盖当前公开的根域名与 www 入口、具有代表性的商店和服务路由、重定向、DNS/TLS、已获取响应中的公开脚本与表单,以及选定的历史快照。
- 对 sitemap 中全部 154 个 URL 的高并发尝试造成 147 个 timeout 和若干 HTTP 508 响应。这些不可用响应按未知而非干净处理,本裁定不认证每一个 sitemap URL。
- 客户报告的私有服务器 malware 扫描、服务器文件与进程、出站日志、管理员状态和更新记录无法独立访问,因此未视为已确认。
- 未执行购买、checkout 交易、付款、账户登录、凭证输入或表单提交,也未评估私有或未来内容。
- 部分公开 intelligence 和 sandbox 来源需要授权或不可用。这些来源按未知而非干净处理。
帮助保护他人,快在社交媒体上分享此页面吧!知道stealtho.store的人越多,骗子就越难得逞。 在社交媒体上分享此页面,帮助更多人评估stealtho.store!