gemnnixlogen[.]gitbook[.]io
gemnnixlogen.gitbook.io की फ़िशिंग और सुरक्षा जाँच
“G𝓮miñi : Login | Sign In”
gemnnixlogen.gitbook.io — अंतिम ज्ञात सक्रिय (HTTP 307). घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); CF Radar malicious; PhishDestroy score 100/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, gemnnixlogen.gitbook.io, is identified as a generic phishing site impersonating the Gemini cryptocurrency exchange login portal. The page title, "G𝓮miñi : Login | Sign In," uses Unicode character substitution to mimic the legitimate Gemini branding, a common tactic in credential harvesting attacks. No specific drainer kit signatures were observed, but the site structure aligns with phishing templates designed to capture user credentials for financial fraud or account takeover attempts.
Analysis indicates the domain is flagged by 13 out of 95 security vendors on VirusTotal, with a Gridinsoft trust score of 0/100. It is registered through Cloudflare, Inc., and resolves to the IP address 104.18.40.47, a Cloudflare proxy endpoint. The domain was created on March 30, 2014, though the malicious content appears to have been deployed recently. It appears on one security blocklist and employs technologies including GitBook, Google Cloud, HSTS, and HTTP/3. The SSL certificate is issued by Google Trust Services, which does not mitigate the phishing risk.
As of the latest verification, the domain has been taken offline, likely due to enforcement actions by hosting providers or security entities. However, residual risk remains as threat actors may re-deploy the phishing kit under a new domain or subdomain. Users who interacted with the site should assume credential compromise and initiate password resets, enable multi-factor authentication, and monitor linked accounts for unauthorized activity. Organizations are advised to block the domain and associated IP (104.18.40.47) at the network level and update detection rules to account for Unicode-based brand impersonation tactics.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 6 identified
GitBook is a command-line tool for creating documentation using Git and Markdown.
www.gitbook.com 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासGoogle Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of gemnnixlogen.gitbook.io · checked Jun 25, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।