# admin-apply.pages.dev — MALICIOUS > admin-apply.pages.dev is a fake admin portal phishing domain flagged by 5 of 95 VirusTotal vendors. Check the full report. ## Summary PhishDestroy identifies admin-apply.pages.dev as an active generic phishing domain impersonating a system administration portal. The domain is currently operational and engages in credential harvesting or malware distribution under the guise of legitimate administrative access. This threat exploits user trust in admin panels to deceive victims into disclosing sensitive credentials or downloading malicious payloads. This domain was flagged by 5 of 95 VirusTotal security vendors, indicating moderate detection but insufficient global blocklisting. Registered through Cloudflare, Inc., the domain resolves to IP address 188.114.97.3 and operates under a Google Trust Services SSL certificate for deceptive legitimacy. The infrastructure leverages Cloudflare’s Pages.dev platform, a common tactic among threat actors to obscure malicious origins with legitimate service providers. While creation date details remain unverified, the combination of low blocklist adoption and active SSL usage elevates its risk profile. PhishDestroy assesses this domain as elevated risk due to its active status, partial VirusTotal detections, and impersonation of critical admin functionality. Victims attempting to access such portals risk credential theft, lateral network compromise, or malware infection. Users are strongly advised to avoid visiting this domain, block the associated IP (188.114.97.3), and report the domain to their security teams or via PhishDestroy’s reporting system. Security teams should monitor for connections to this domain in network logs and consider it a high-priority indicator of compromise. ## Threat Details - Verdict: MALICIOUS - Site status: unknown (HTTP ?) ## Domain Intelligence - Registrar: Cloudflare, Inc. - IP: 188.114.97.3 ## Detection Status - VirusTotal: 5 vendors flagged - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Cloudflare Radar: https://radar.cloudflare.com/scan/8152b64b-ff84-43e1-97da-652c5adea2d4 - PhishDestroy: https://phishdestroy.io/domain/admin-apply.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/admin-apply.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/admin-apply.pages.dev/ Last updated: 2026-04-01