cypto-upholdld[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
On 24 July 2026 the domain cypto-upholdld.pages.dev was observed hosting a credential phishing page that returned HTTP 403 and displayed the Cloudflare‑generated title “Suspected phishing site | Cloudflare”. The domain resolves to 172.66.47.140, an address owned by AS13335 Cloudflare, Inc. in the United States. Registration data show the domain was created on 21 February 2026 through Cloudflare, Inc., and the authoritative nameservers are collins.ns.cloudflare.com and carmelo.ns.cloudflare.com. TLS termination is provided by a Google Trust Services certificate (WE1) and the site advertised HSTS and HTTP/3 support, indicating modern web stack usage. Reputation services flag the host as highly suspicious.
Google Safe Browsing categorises it as “social engineering”, and PhishDestroy has actively blocked the domain. VirusTotal recorded 12 detections out of 93 scanned vendors, and the domain appears on at least one public blocklist. Independent trust‑scoring services assign near‑zero scores (Gridinsoft 0/100, Scamadviser 1/100). The site’s current status is offline, suggesting the operator may have withdrawn the infrastructure after detection. Evidence confirms a credential‑phishing campaign, but the specific target brand or service being spoofed cannot be derived from the available artefacts; the page title contains no brand reference and no additional content has been disclosed.
Consequently, attribution of the phishing lure remains unknown. Analysts should continue monitoring the IP address 172.66.47.140 and the associated Cloudflare ASN for any re‑use, and incorporate the domain into internal blocklists. Endpoint protection solutions that reference Google Safe Browsing or VirusTotal verdicts will already flag the host. Defensive teams are advised to enforce network‑level deny rules for the domain and to educate users about unsolicited credential requests, especially those that resolve to Cloudflare‑hosted subdomains with generic phishing titles.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilebilir → Erişilemiyor
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of cypto-upholdld.pages.dev · checked Apr 13, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin