geminxi-logen[.]gitbook[.]io
“Gemini Login | Sign In”
证据摘要
PhishDestroy identifies geminxi-logen.gitbook.io as an active fake login phishing domain posing elevated risk. This site, registered through Cloudflare on March 30, 2014, leverages a Google Trust Services SSL certificate to appear legitimate while attempting credential theft. VirusTotal analysis confirms detection by 7 of 95 security vendors, and Google Safe Browsing flags it specifically for social engineering attacks. The domain's age and Cloudflare registration obscure origin while the Google SSL certificate adds a false veneer of authenticity to deceive potential victims.
Technical analysis reveals that geminxi-logen.gitbook.io resolves to IP address 172.64.147.209, which is associated with hosting infrastructure known to support phishing operations. The domain's age (established in 2014) suggests it may have initially been legitimate but is now compromised or repurposed by threat actors. The presence of 7 detections on VirusTotal, while not definitive proof of malicious intent, combined with Google's social engineering classification and minimal community trust indicators, elevates the threat level to 'elevated.' The use of a legitimate-looking GitBook subdomain demonstrates a common tactic to bypass basic domain reputation checks.
Users who have visited geminxi-logen.gitbook.io should immediately check for unauthorized account access, enable two-factor authentication on all relevant accounts, and scan local devices with updated antivirus software. If any credentials were entered, change passwords immediately and monitor accounts for suspicious activity. Report this domain through PhishDestroy's verification system to help block future threats. Avoid interacting with suspicious login prompts and verify service websites directly from official sources before submitting credentials.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | geminxi-logen.gitbook.io |
malicious | Sinkholed |
| DigiCert UltraDNS | geminxi-logen.gitbook.io |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of geminxi-logen.gitbook.io · checked Mar 28, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控