gumini-loggnius[.]godaddysites[.]com
“G𝓮mini : Login | Sign In”
gumini-loggnius.godaddysites.com — Non verificato. Simulazione del marchio: Gemini; Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Emsisoft); CF Radar malicious; PhishDestroy score 95/100. Registrar: GoDaddy.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain gumini-loggnius.godaddysites.com has been identified as a generic phishing site specifically impersonating Gemini, a cryptocurrency exchange platform. The threat type involves a fake login portal designed to harvest user credentials under the guise of the legitimate Gemini service. As of the latest assessment, the domain has been taken offline, though prior activity and infrastructure analysis confirm its malicious intent. Infrastructure analysis reveals the domain was registered through GoDaddy.com, LLC on November 18, 2013, though recent malicious activity suggests it may have been compromised or repurposed. The domain resolves to the IP address 13.248.243.5, hosted on Amazon.com, Inc. infrastructure (AS16509). Security vendors on VirusTotal have flagged this domain, with 19 out of 95 vendors marking it as malicious. Additionally, the domain appears on one security blocklist, further corroborating its association with phishing activity. The SSL certificate is issued by GoDaddy.com, Inc., which, while not inherently suspicious, aligns with the registrar's infrastructure and does not mitigate the domain's malicious use. Current status indicates the domain is offline, reducing immediate risk to end users. However, the infrastructure remains a potential vector for future abuse. Organizations and individuals are advised to block the domain and its associated IP address (13.248.243.5) at the network level to prevent accidental access. Security teams should monitor for similar domains registered under the same infrastructure or impersonating Gemini, particularly those using homoglyphs or slight variations in the domain name. End users are urged to verify the authenticity of any login portal by cross-referencing the URL with the official Gemini domain and enabling multi-factor authentication to mitigate credential theft risks.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Registration: godaddysites.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 4 identified
RequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.
requirejs.org Confidenza al 100%Re:amaze is a multi-brand customer service, live chat, and help desk solution.
www.reamaze.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo