gemninlogine[.]webflow[.]io
“Gemini - How to Sign in to Your Crypto Exchange Account - us”
证据摘要
This domain, gemninlogine.webflow.io, presents a credential harvesting threat targeting users of the Gemini cryptocurrency exchange platform. Analysis indicates the domain impersonates the legitimate Gemini login interface, presenting a page titled 'Gemini - How to Sign in to Your Crypto Exchange Account - us.' Such impersonation domains are designed to deceive users into entering sensitive credentials, including usernames, passwords, and potentially two-factor authentication codes, which attackers may exploit for unauthorized account access or financial theft. Technical evidence substantiates the malicious classification of this domain. The domain is flagged by 21 out of 95 security vendors on VirusTotal, indicating a consensus among detection engines regarding its harmful nature. Infrastructure analysis reveals the domain is hosted on Webflow’s platform and resolves to the IP address 172.64.151.8, located in Canada and associated with Cloudflare, Inc. The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of both legitimate and malicious domains leveraging Content Delivery Network (CDN) services. Additionally, the domain appears on one security blocklist, further corroborating its association with phishing activity. Users who have visited gemninlogine.webflow.io or entered credentials on this domain should take immediate remedial action. It is critical to revoke any entered credentials by changing passwords on the legitimate Gemini platform and enabling multi-factor authentication if not already active. Monitor the associated account for unauthorized transactions or modifications. If financial or personal data was exposed, consider reporting the incident to relevant authorities and credit monitoring services. Users are advised to verify domain authenticity before entering credentials, particularly for financial or cryptocurrency-related services, and to rely on bookmarked or officially verified URLs.
Data Coverage
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | gemninlogine.webflow.io |
phishing | Phishing Block |
| Cloudflare DNS | gemninlogine.webflow.io |
malicious | Sinkholed |
| DNS4EU | gemninlogine.webflow.io |
malicious | Sinkholed |
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
VirusTotal
0 → 21
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of gemninlogine.webflow.io · checked Mar 22, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控