begin-bridge-8uj[.]pages[.]dev
“Trezor Bridge | Secure Connection for Trezor Devices”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
PhishDestroy identifies begin-bridge-8uj.pages.dev as a domain currently under investigation for potential involvement in cryptocurrency drainer operations. The threat type is specifically a crypto drainer phishing campaign, designed to trick users into connecting their crypto wallets and unknowingly approve malicious transactions that drain funds. Given the active status and low detection rates, this domain poses a significant risk to unsuspecting cryptocurrency users, particularly those engaging with decentralized applications or platforms associated with cloud-based hosting services like Cloudflare Pages. This domain resolves to IP address 172.66.44.111 and operates under a Cloudflare, Inc. registrar, utilizing Google Trust Services for its SSL certificate. VirusTotal currently flags this domain with a 3 out of 95 detection score, indicating it has not yet been widely recognized by security vendors as malicious. The domain is hosted on Cloudflare Pages, a legitimate service, which may be leveraged to obfuscate its true intent. The risk level remains classified as under_investigation, but the absence of detections and active status warrant heightened scrutiny. No additional blocklists or reputation scores were provided in the available intelligence at this time. Analysts should treat begin-bridge-8uj.pages.dev as a high-risk crypto drainer domain and prioritize mitigation efforts accordingly. Users are advised to avoid interacting with this domain, particularly any prompts to connect crypto wallets or approve transactions. Security teams should monitor network traffic for connections to IP 172.66.44.111 and inspect SSL certificates associated with Google Trust Services for anomalous domains. Implementing network-level blocking for this domain and IP address is recommended until further intelligence confirms its legitimacy or malicious nature. Additionally, users should enable wallet transaction approval alerts and verify the authenticity of any platform prompting for crypto wallet connections through out-of-band communication channels.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
Криміналістичні дані
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of begin-bridge-8uj.pages.dev · checked Mar 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога