uipxholdloginx[.]gitbook[.]io
“Ûphold Loℊin | Sign In 💎”
The domain uipxholdloginx.gitbook.io has been identified as a credential phishing resource specifically targeting users of the Uphold digital asset platform. Analysis confirms the site impersonates the legitimate Uphold login interface, presenting a fraudulent authentication portal designed to harvest user credentials. The domain is currently offline, though prior activity indicates a high-risk threat profile. Technical indicators reveal the domain was flagged by 13 of 95 security vendors on VirusTotal, with additional detections on three independent security blocklists. Infrastructure analysis shows the domain was registered through GitBook, resolving to the IP address 172.64.147.209, hosted on infrastructure associated with Cloudflare, Inc. in Canada. The SSL certificate is issued by Google Trust Services under the identifier WE1. Notably, the domain registration date is listed as May 06, 2026, suggesting potential manipulation of WHOIS records or an attempt to obscure true creation timelines. The page title, Ûphold Loℊin | Sign In 💎, contains non-standard Unicode characters likely intended to bypass basic detection mechanisms while maintaining visual similarity to the legitimate service. Current status confirms the domain has been taken offline, though the underlying infrastructure remains a potential vector for future malicious activity. Organizations and users are advised to implement proactive blocking of the domain and associated IP address within network security controls. Security teams should monitor for similar impersonation attempts using Unicode character substitution or GitBook-hosted resources. End users should verify the authenticity of login portals through official channels and enable multi-factor authentication to mitigate credential theft risks. Given the high-risk classification and prior detection history, this domain warrants continued monitoring for reactivation or migration to alternative hosting.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 स्रोत · 09/08/2026 को सिंक किया गया
पहचान समयरेखा
संग्रहीत अवलोकन कालानुक्रमिक क्रम में।
-
Cloudflare Radar
Cloudflare Radar: पहली बार https://radar.cloudflare.com/scan/1afaf25b-d6ee-4427-b81c-7709a4da9ddb के रूप में देखा गया
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
तकनीकें
6 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।