uphod-login[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
Analysis of the domain uphod-login.pages.dev, created on February 21, 2026, indicates a high‑risk credential phishing operation. The site was served through Cloudflare’s network (AS13335) and resolved to the IP address 172.66.47.177 located in the United States. HTTP responses returned a 403 status code, and the page title reported by the server is “Suspected phishing site | Cloudflare”, confirming that the content is flagged by the provider. The TLS certificate is issued by Google Trust Services under the WE1 root, which is typical for Cloudflare‑protected sites and does not provide assurance of legitimacy.
Security‑vendor scans on VirusTotal show that 11 of 93 scanners flagged the domain, and the domain appears on a single external blocklist. Google Safe Browsing classifies the URL as social engineering, and the PhishDestroy blocklist has already taken the site offline. Reputation services assign extremely low trust scores, with Scamadviser reporting 1/100 and Gridinsoft 0/100, reinforcing the malicious assessment. The registrar information lists Cloudflare, Inc. as the registrar, and the authoritative nameservers are sunny.ns.cloudflare.com and anirban.ns.cloudflare.com, both belonging to Cloudflare’s DNS infrastructure.
Detected technologies include HSTS, Cloudflare’s edge services, and HTTP/3, all of which are consistent with a standard Cloudflare deployment. No additional indicators such as malware payloads, credential‑harvesting scripts, or target brand references were observed in the available data, leaving the precise phishing kit unknown. Defenders should block the domain at the DNS and proxy layers, add the IP address 172.66.47.177 to network‑level deny lists, and monitor for any related subdomains that resolve to the same Cloudflare infrastructure. Continuous re‑scanning of the domain and its associated IP is recommended to capture any future changes in detection status or additional malicious activity.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
-
Estado del dominio
Accesible → Inaccesible
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Inteligencia forense
Tecnologías
3 tecnologías identificadas con alta confianza
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of uphod-login.pages.dev · checked Apr 13, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.