MALICIOUS — HIGH
begin-access-ge-mini[.]pages[.]dev
The domain begin-access-ge-mini.pages.dev was registered through Cloudflare, Inc.
- VirusTotal
- 2/94
- Blocklists
- 2 · MetaMask, SEAL
- Kullanılabilirlik
- Ulaşılabilir · erişim kısıtlı · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
begin-access-ge-mini.pages.dev — Ulaşılabilir · erişim kısıtlı (HTTP 403). Marka kimliğine bürünme: Gemini; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 2/94 (LevelBlue, Phishing Database); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
begin-access-ge-mini.pages.dev — Gemini Credential Phish
Security analysis of begin-access-ge-mini.pages.dev covers observed phishing indicators, infrastructure evidence, current status, and defensive guidance.
The domain begin-access-ge-mini.pages.dev was registered through Cloudflare, Inc. on 14 March 2026 and resolves to the IP address 172.66.44.59, which is owned by Cloudflare (AS13335) and geolocated to the United States. The site served an HTTPS certificate issued by Google Trust Services under the WE1 intermediate, and the HTTP response returned a 403 status code. Automated analysis detected the presence of HTTP Strict Transport Security, Cloudflare’s edge protection, and HTTP/3 support. The page title observed during the brief capture was “Signing in – Gemini”, indicating an attempt to impersonate the Gemini cryptocurrency exchange. VirusTotal scanned the domain and two of ninety‑four security vendors reported a detection, while Gridinsoft assigned a trust score of zero out of one hundred.
The domain appears on three independent security blocklists and has been flagged by PhishDestroy, MetaMask, and SEAL as a credential‑phishing vector. Current operational status is offline, suggesting the phishing campaign has been taken down or is temporarily dormant. Analysis confirms that the infrastructure is typical of fast‑flux‑style phishing operations that leverage Cloudflare’s free tier to hide origin servers. The combination of a recent registration date, a brand‑specific page title, and low trust scores strongly points to a credential‑phishing campaign targeting Gemini users. Uncertainty remains regarding the exact phishing kit used, the presence of any malicious payloads, and whether the domain may be re‑registered for future abuse.
Defenders should add begin-access-ge-mini.pages.dev to internal blocklists and ensure that DNS filtering solutions block the associated IP range 172.66.44.0/24 where feasible. Security teams should monitor Cloudflare‑hosted domains that share the same name servers (dee.ns.cloudflare.com, walt.ns.cloudflare.com) for patterns of rapid registration and similar page titles.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of begin-access-ge-mini.pages.dev · checked Mar 14, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.