gemmineligin[.]webflow[.]io
“Gemini® Login: Empowering Digital Investors with Trusted”
Збережене спостереження
Зафіксована відмінність заголовків
Зведення доказів
This domain, gemmineligin.webflow.io, poses a brand_impersonation threat specifically targeting Gemini, a cryptocurrency exchange platform. The domain hosts a fraudulent login page titled 'Gemini® Login: Empowering Digital Investors with Trusted,' designed to deceive users into entering sensitive credentials, such as usernames, passwords, and potentially two-factor authentication codes. The page closely mimics Gemini's legitimate interface, increasing the likelihood of successful credential harvesting for unauthorized account access or financial theft. Analysis indicates the domain is flagged by 18 out of 95 security vendors on VirusTotal, confirming its malicious nature. It resolves to the IP address 172.64.151.8, hosted on infrastructure belonging to AS13335 (Cloudflare, Inc.) in the United States. The domain is registered through Webflow and appears on at least one security blocklist. Despite its current offline status, the domain's infrastructure and historical activity remain a concern for potential reuse or rebranding under a different name. Users who visited gemmineligin.webflow.io or entered credentials on the site should immediately take corrective action. Reset passwords for Gemini and any other accounts where identical or similar credentials were used. Enable multi-factor authentication (MFA) if not already active, and monitor accounts for unauthorized transactions or suspicious activity. If financial information was entered, consider contacting the relevant institution to report potential fraud. Additionally, scan local devices for malware, as credential-harvesting pages may deploy additional payloads.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | gemmineligin.webflow.io |
malicious | Sinkholed |
| Cloudflare DNS | gemmineligin.webflow.io |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
0 → 17
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of gemmineligin.webflow.io · checked Mar 18, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога