garminilgeen[.]webflow[.]io
“G𝓮miñi : Login | - SignIn”
Evidence Summary
Analysis of garminilgeen.webflow.io as of August 06, 2026 indicates the domain is actively being used for generic phishing. The domain resolves to the IP address 104.18.36.248, a host commonly associated with CDN services. No nameserver records were returned, suggesting either intentional obfuscation or misconfiguration of the DNS zone. VirusTotal reports that 12 of 91 security vendors have flagged the domain, providing independent confirmation of malicious activity.
The domain is listed on a single security blocklist and has been explicitly blocked by the PhishDestroy filtering service, reinforcing the view that it is considered harmful by multiple defensive platforms. Registration details show the domain was created through Webflow, Inc., a legitimate website‑building service, which is often abused to host fraudulent pages because of its ease of deployment and built‑in SSL support. The threat classification is recorded as generic phishing, and the risk level has been assigned as high. Current monitoring indicates the domain remains active, with no evidence of takedown or remediation.
Defenders should treat any traffic to or from garminilgeen.webflow.io as suspicious. Recommended mitigations include adding the domain to deny lists, enforcing outbound filtering, and monitoring for related DNS queries. Continuous re‑evaluation is advised, as the hosting provider may change the underlying IP or the domain could be repointed to new infrastructure, potentially altering its threat profile.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 13, 2026
10 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
Technologies
3 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of garminilgeen.webflow.io · checked Aug 6, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive