uphold-log--in[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
Analysis of the domain uphold-log--in.pages.dev indicates a credential phishing operation targeting users of a financial platform. The domain, registered on February 21, 2026, through Cloudflare, Inc., currently resolves to the IP address 188.114.97.3, which is part of AS13335 (Cloudflare, Inc.) and geolocated in the US. Infrastructure analysis reveals the use of Cloudflare nameservers (cullen.ns.cloudflare.com, kara.ns.cloudflare.com) and technologies including HSTS and HTTP/3, alongside a Cloudflare-hosted frontend that returned an HTTP 403 status at the time of assessment. Google Safe Browsing categorizes the domain as engaging in social engineering, while PhishDestroy has implemented a block.
The domain appears on one security blocklist, and 13 out of 93 security vendors on VirusTotal flag it as malicious. Gridinsoft assigns a trust score of 0/100, further supporting the classification of high-risk phishing activity. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious Cloudflare-hosted sites. The page title, 'Suspected phishing site | Cloudflare,' suggests Cloudflare’s automated detection systems may have identified and labeled the content prior to takedown.
The domain is currently offline, though defenders should treat any prior resolution or DNS queries as indicators of compromise. No specific phishing kit or targeted brand beyond the domain’s naming convention (uphold-log--in) is confirmed in the available data. While the domain structure implies an attempt to mimic Uphold, a digital money platform, this cannot be verified without additional forensic evidence. Organizations are advised to block the domain, IP, and associated nameservers at perimeter controls and monitor for related credential theft or follow-on attacks.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of uphold-log--in.pages.dev · checked Apr 21, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin