app-uphold-login[.]blogspot[.]bg
“Uphold Login | Secure Digital Access”
app-uphold-login.blogspot.bg — Non vérifié. Type d'arnaque : Credential Phishing. Résumé des preuves: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 83/100.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, app-uphold-login.blogspot.bg, is currently flagged as an active credential phishing site targeting users of the Uphold digital asset platform. Analysis indicates the page title explicitly references 'Uphold Login | Secure Digital Access,' suggesting an attempt to impersonate the legitimate Uphold authentication portal. The domain is hosted on Blogger infrastructure, resolving to the IP address 142.250.186.97, which is associated with Google's network. While the SSL certificate is issued by Google Trust Services, providing an appearance of legitimacy, this alone does not mitigate the phishing risk, as certificates are routinely issued to malicious actors leveraging free hosting services. Infrastructure analysis reveals the use of Blogger as the hosting platform, alongside detected technologies including Java, Python, and OpenGSE. The domain is flagged by 12 out of 95 security vendors on VirusTotal, indicating moderate detection coverage but not universal blocking. Additionally, the domain appears on at least one security blocklist, further corroborating its malicious classification. The registrar details remain undisclosed, but the use of a Blogger subdomain aligns with common phishing tactics to evade domain reputation systems. The exact content and functionality of the phishing page have not yet been fully analyzed, though the page title suggests it is designed to harvest login credentials. Defenders are advised to treat this domain as high-risk and implement blocking measures at the network and endpoint levels. Monitoring for connections to 142.250.186.97 or subdomains of blogspot.bg may aid in detecting related phishing activity. Given the domain's persistence as of July 12, 2026, organizations should prioritize user awareness regarding credential phishing risks, particularly those targeting financial or cryptocurrency platforms.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 5 identified
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of app-uphold-login.blogspot.bg · checked Jul 12, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif