auth---uphold-cdn-login[.]weebly[.]com
“404 - Page Not Found”
auth---uphold-cdn-login.weebly.com — Контент недоступний. Уособлення бренду: MetaMask. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: MarkMonitor.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain auth---uphold-cdn-login.weebly.com is currently active and classified as a credential phishing site. Registration data shows it was created on March 29, 2006 and is registered through MarkMonitor, Inc., a registrar often associated with high‑value brand protection services. The authoritative name servers are ns-123.awsdns-15.com, ns-1500.awsdns-59.org, ns-1797.awsdns-32.co.uk, and ns-646.awsdns, indicating the domain is hosted on Amazon’s Route 53 DNS infrastructure. DNS resolution points to the IPv4 address 74.115.51.8, which is the sole host observed for this domain.
Multiple security‑focused services have taken action against the domain: PhishDestroy, MetaMask, and SEAL have all listed it as blocked, and it appears on three independent security blocklists. Google Safe Browsing has flagged the domain for social engineering, reinforcing the phishing classification. VirusTotal analysis shows that 18 of 91 scanning engines have flagged the domain, demonstrating a moderate to high level of consensus among detection vendors. The available evidence confirms that the domain is being used to harvest credentials, but the specific target brand, page title, or phishing kit employed has not been disclosed in the current intelligence set.
Consequently, defenders cannot attribute the site to a particular victim demographic beyond the generic credential‑theft motive. Given the confirmed malicious infrastructure, security teams should enforce network‑level blocks for the domain and its resolved IP address, add the domain to local and cloud‑based URL filtering policies, and monitor for any outbound connections to the host. Incident response teams should also consider scanning for related indicators of compromise, such as traffic to the listed Amazon name servers or any payloads that reference the domain’s URL pattern.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: weebly.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain weebly.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 1 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of auth---uphold-cdn-login.weebly.com · checked Jul 29, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога