sso-uphold-cloud[.]tem3[.]io
“Log In | Uphold® | Sign In to Your Account - uphold login”
sso-uphold-cloud.tem3.io — Não verificado. Representação da marca: Uphold; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 21/91 (ChainPatrol, BitDefender, Chong Lua Dao, Cluster25, CRDF); URLScan malicious verdict; PhishDestroy score 95/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain sso-uphold-cloud.tem3.io is a confirmed phishing site targeting users of the financial services platform Uphold. The domain is designed to mimic the legitimate log-in page of Uphold, potentially leading to credential theft and financial loss. No specific drainer kit has been identified in the analysis.
Technical indicators reveal that this domain has been flagged by 18 out of 95 security vendors on VirusTotal, indicating a significant level of suspicion among security experts. The domain is registered through GoDaddy.com, LLC and resolves to an IP address in the United States (104.21.79.46), which is part of the AS13335 Cloudflare, Inc. network. The domain was created on August 02, 2024, and the SSL certificate is issued by Google Trust Services / WE1. The site is currently listed on one security blocklist and is blocked by the PhishDestroy system.
The domain remains active as of the latest assessment, posing a high risk to unsuspecting users. Immediate response actions include avoiding the site, reporting it to Uphold, and ensuring that any credentials potentially compromised are changed. Users are advised to verify the URL of the legitimate Uphold site and to use multi-factor authentication to enhance account security. The presence of the domain on a security blocklist and its high VirusTotal score suggest that it is a credible threat, and further monitoring and potential blacklisting by additional security services are recommended.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo