official-login-uphold[.]created[.]app
“Official Uphold Login Page | Manage”
official-login-uphold.created.app — Terselubung · dapat dijangkau. Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, ESET); Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Registrar: Tucows Domains.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain official-login-uphold.created.app was registered on May 21, 2026 through Tucows Domains Inc and is currently resolving to the IP address 216.150.1.65, which is owned by Vercel, Inc. The authoritative nameservers are ns1.vercel-dns.com and ns2.vercel-dns.com, indicating that the site is hosted on a Vercel infrastructure. An active TLS certificate issued by Let’s Encrypt (R13) is present, and the site returns HTTP 200 responses. The page title observed in the live content is "Official Uphold Login Page | Manage," matching the branding of the legitimate financial service and suggesting a credential‑phishing intent.
Technical analysis shows that the domain is flagged by six out of ninety‑five security vendors on VirusTotal, and Google Safe Browsing categorises it under SOCIAL_ENGINEERING. It appears on three public blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL. The Gridinsoft trust score is 0 out of 100, reinforcing the malicious assessment. No additional infrastructure such as secondary hosting or content delivery networks is evident beyond the Vercel edge, and the operator’s identity remains undisclosed.
Defenders should add official-login-uphold.created.app to domain blocklists across network perimeter and endpoint controls, and monitor DNS queries for the associated Vercel nameservers. Email security gateways should enforce URL rewriting or blocking for any links that resolve to this domain, especially those purporting to be official login portals for the targeted brand. Continuous threat‑intel feeds should be consulted for any emerging indicators tied to the IP 216.150.1.65, and incident response teams should be prepared to investigate credential submissions that may be routed through this infrastructure.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: created.app
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain created.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive