uphld-lgnn-en[.]pineapple[.]page
“Log In | Uphold®: | Sign In to Your Account”
uphld-lgnn-en.pineapple.page — Encubierto · accesible. Suplantación de marca: Apple; Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 20/91 (ADMINUSLabs, AILabs (MONITORAPP), BitDefender, Chong Lua Dao, Cluster25); URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Registrador: Squarespace Domains II.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain uphld-lgnn-en.pineapple.page is actively engaged in brand impersonation targeting Apple users, specifically designed to harvest login credentials. Analysis indicates this is a high-risk phishing operation, with the page title explicitly mimicking legitimate authentication portals: "Log In | Uphold®: | Sign In to Your Account." The threat remains operational, posing significant risk to unsuspecting visitors seeking Apple services. Infrastructure analysis reveals multiple concrete indicators of malicious activity. The domain is flagged by 19 of 95 security vendors on VirusTotal, including detection by Google Safe Browsing as a phishing site. It resolves to IP address 216.150.16.1, hosted on Amazon.com, Inc. infrastructure (AS16509) in the United States. The domain is registered through Squarespace Domains II LLC and appears on at least one security blocklist. A Let's Encrypt SSL certificate (R13) is deployed, providing a false sense of security to potential victims. The combination of these technical factors confirms the domain's fraudulent nature. Current status shows the phishing site remains active, continuing to present a credible facade of an Apple login portal. Users are strongly advised to avoid interaction with this domain entirely. Organizations should implement immediate blocking at the network level, utilizing the IP address and domain name as indicators of compromise. Security teams are recommended to monitor for credential submissions to this endpoint and initiate password resets for any accounts potentially exposed. The presence of this domain on multiple security platforms underscores the need for heightened vigilance against similar brand impersonation threats.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Registration: pineapple.page
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain pineapple.page behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologías · 3 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100 % de confianzaReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaAnálisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.