geminiloginan[.]gitbook[.]io
Phishing- und Sicherheitsprüfung für geminiloginan.gitbook.io
“Gemini Login | Cryptocurrency Exchange to Buy Bitcoin and Ether”
geminiloginan.gitbook.io — Letzter bekanntermaßen aktiv (HTTP 307). Markenidentität: Gemini; Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 4 alerts; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Registrar: Cloudflare.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
The domain geminiloginan.gitbook.io is identified as a brand impersonation threat targeting the Gemini cryptocurrency exchange. The domain is currently offline, which may indicate that it has been taken down by security teams or the registrar.
Analysis of the domain reveals that it was registered through Cloudflare, Inc. and resolves to the IP address 104.18.40.47. The domain was created on February 26, 2026. It has been flagged by 6 out of 95 security vendors on VirusTotal, suggesting a moderate level of suspicion. The SSL certificate is issued by Google Trust Services / WE1, which can lend a false sense of legitimacy to users. Additionally, the domain appears on 3 security blocklists, further indicating its malicious nature. The page title, 'Gemini Login | Cryptocurrency Exchange to Buy Bitcoin and Ether,' closely mimics the legitimate Gemini website, which can trick users into divulging sensitive information.
Given the current status of the domain being offline, it is recommended that users exercise caution and avoid visiting the site. Security teams should monitor the domain for any signs of reactivation and consider adding it to their blocklists. Organizations should also educate their users about the risks of brand impersonation and how to verify the authenticity of websites, particularly those related to financial transactions.
Datenabdeckung12 recorded checks
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | geminiloginan.gitbook.io |
malicious | Sinkholed |
| Cloudflare DNS | geminiloginan.gitbook.io |
malicious | Sinkholed |
| DNS4EU | geminiloginan.gitbook.io |
malicious | Sinkholed |
| OpenDNS | geminiloginan.gitbook.io |
phishing | Phishing Block |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of geminiloginan.gitbook.io · checked Mar 2, 2026
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.