gemniniloegin[.]webflow[.]io
“Gemini login| Gemini - Turn your money into crypto assets”
Зведення доказів
The domain geminiiloegin.webflow.io is currently active and has been classified as a high‑risk brand‑impersonation site targeting Gemini customers. Its public page title reads “Gemini login| Gemini - Turn your money into crypto assets”, indicating a clear attempt to lure credential submissions. The site was first observed on May 08 2013 and remains reachable as of the report date, July 12 2026.
Technical profiling shows the site is hosted on the Webflow platform and protected by Cloudflare’s network, using HTTP/3 and presenting a Google Trust Services/WE1 SSL certificate. DNS resolution points to the address 172.64.151.8, which belongs to AS13335 Cloudflare, Inc., located in the United States. The authoritative nameservers are journey.ns.cloudflare.com and lamar.ns.cloudflare.com.
Threat intelligence indicates the page mimics the official Gemini login flow to harvest user credentials, a classic credential‑phishing pattern. The domain appears on a single security blocklist and has been blocked by PhishDestroy, while the Gridinsoft trust score is 0 out of 100. VirusTotal analysis returned 15 detections out of 95 scanners, reinforcing the malicious verdict.
Defenders should add geminiiloegin.webflow.io to endpoint and network deny lists, enforce TLS inspection to capture credential submissions, and monitor for any outbound connections to the associated Cloudflare IP. Continuous re‑evaluation is advised, as the underlying hosting service may enable rapid content changes. Awareness campaigns that highlight the exact page title and visual cues can reduce user exposure to this impersonation scheme.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога