gemeiniloginin[.]webflow[.]io
“Gemini Login - Cryptocurrency Exchange”
gemeiniloginin.webflow.io — Doğrulanmamış. Marka kimliğine bürünme: Gemini; Dolandırıcılık türü: Fake Exchange. Kanıt özeti: VirusTotal 18/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 95/100. Kayıt kuruluşu: MarkMonitor.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, gemeiniloginin.webflow.io, is flagged for high-risk brand impersonation targeting Gemini, a cryptocurrency exchange platform. Analysis indicates the page mimics the legitimate Gemini login interface, presenting itself under the title 'Gemini Login - Cryptocurrency Exchange' to deceive users into submitting credentials or sensitive financial information. No explicit drainer kit signatures have been identified at this stage, though the infrastructure aligns with credential-harvesting campaigns observed in prior cryptocurrency-related phishing operations. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 104.18.36.248 and is hosted on a platform utilizing SSL certificates issued by Google Trust Services. The domain was originally registered on May 08, 2013, through MarkMonitor, Inc., a registrar commonly associated with both legitimate and malicious domains. Detection metrics from VirusTotal indicate 12 out of 95 security vendors classify this domain as malicious. No entries were found in Google Safe Browsing at the time of analysis, though this does not preclude prior or intermittent blocklisting. As of the latest assessment, gemeiniloginin.webflow.io remains active and continues to pose a significant risk to users. No takedown actions have been confirmed, and the domain’s hosting on a reputable content delivery network complicates mitigation efforts. Users are advised to verify domain authenticity by cross-referencing with official Gemini communication channels and to avoid interacting with unsolicited login prompts. Organizations should update blocklists with the provided indicators and monitor for credential reuse attempts originating from compromised accounts.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of gemeiniloginin.webflow.io · checked Jun 26, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin