web-uphold-auth-io[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis of the domain web-uphold-auth-io.pages.dev indicates that it is being leveraged for a generic phishing campaign. The domain was registered on February 21, 2026 through Cloudflare, Inc., and its DNS resolves to the Cloudflare edge address 172.66.46.247, which is associated with ASN 13335 and located in the United States. The site presents a Cloudflare‑issued page titled "Suspected phishing site | Cloudflare" and returns an HTTP 403 response, suggesting that the content is blocked or restricted. The TLS certificate in use is issued by Google Trust Services under the WE1 name, confirming that standard HTTPS is enforced via HSTS.
Threat intelligence records show that the domain appears on one security blocklist and has been specifically flagged by PhishDestroy. VirusTotal scans have returned 11 positive detections out of 95 scanners, reflecting consensus among multiple vendors that the domain is malicious. Additionally, Gridinsoft assigns a trust score of 0 out of 100, indicating a high confidence in its malicious nature. The nameservers listed are georgia.ns.cloudflare.com and seth.ns.cloudflare.com, both standard Cloudflare NS records.
While the exact phishing payload or targeted brand is not disclosed in the available data, the combination of blocklist inclusion, multi‑vendor detection, and a zero trust score provides sufficient evidence for defensive action. Organizations should add this domain to URL filtering and DNS sinkhole lists, monitor for any outbound connections to the associated IP, and ensure that endpoint security solutions are updated to reflect the current vendor detections. Continuous re‑evaluation is advised in case the domain is re‑activated or new artifacts emerge.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
التقنيات
حُدّدَت تقنيتان عاليتا الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب