ai-uphold[.]created[.]app
“Official Site® | Uphold Login® | Getting started — Uphold®”
ai-uphold.created.app — ढका हुआ · पहुंच योग्य. ब्रांड प्रतिरूपण: Uphold; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, CyRadar, ESET, Emsisoft); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 95/100. रजिस्ट्रार: Tucows Domains.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain ai-uphold.created.app has been identified as a high-risk phishing portal specifically designed to impersonate the official Uphold cryptocurrency platform. Analysis confirms this as a brand impersonation attack, presenting a fraudulent login interface under the page title 'Official Site® | Uphold Login® | Getting started — Uphold®.' The domain is currently offline, though prior activity indicates it was actively targeting users seeking to access Uphold accounts for credential harvesting or cryptocurrency theft. Infrastructure analysis reveals the domain was registered through Tucows Domains Inc and resolved to the IP address 216.150.16.65. Security vendor detections on VirusTotal indicate that 15 of 95 engines flagged this domain as malicious, while it appears on three independent security blocklists. The site employed a Let's Encrypt SSL certificate, which, while providing basic encryption, does not validate legitimacy. Additional technical indicators include the use of Node.js, React, Google Cloud, Vercel, and Next.js—common frameworks that may have been leveraged to create a convincing replica of the legitimate Uphold interface. Gridinsoft assigned a trust score of 0/100, further corroborating its malicious classification. At present, ai-uphold.created.app has been taken offline, though similar domains may emerge using comparable tactics. Users who accessed this domain should immediately revoke any active sessions, reset credentials for Uphold and associated financial accounts, and monitor for unauthorized transactions. Organizations are advised to update blocklists with the domain and IP address, while security teams should investigate potential exposure through logs or proxy data. Proactive measures, including multi-factor authentication and browser-based phishing protections, are recommended to mitigate future risks from brand impersonation attacks.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | ai-uphold.created.app |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: created.app
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain created.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 9 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% विश्वासReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% विश्वासNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% विश्वासLaunchDarkly is a continuous delivery and feature flags as a service platform that integrates into a company's current development cycle.
launchdarkly.com 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of ai-uphold.created.app · checked Jun 26, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260521-F95C3E Recipient: abuse@vercel.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।