الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 17. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

robinhoodloginn[.]gitbook[.]io

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر آخر نشاط معروف أحدث مراقبة إمكانية الوصول المخزنة
اكتشافات VirusTotal: 17/94 URLQuery threat systems: 3 alerts انتحال العلامة التجارية: Robinhood آخر نشاط معروف
15/06/2026 Robinhood CDN
ملخص الأدلة
حرج
الدرجة
100/100

robinhoodloginn.gitbook.io was registered on March 24, 2026 and resolves to the Cloudflare‑owned address 104.18.40.47, which is geolocated to Canada. The domain is served through Cloudflare’s infrastructure, identified by the nameservers dahlia.ns.cloudflare.com and hugh.ns.cloudflare.com and the presence of HTTP/3. TLS termination is provided by a Google Trust Services certificate issued to “WE1”, confirming that the site uses a legitimate certificate chain but does not authenticate the underlying content. The site has been flagged by multiple security platforms: VirusTotal’s recent scan recorded 16 detections out of 95 scanned vendors, and the domain appears on one public blocklist. PhishDestroy has already listed the domain as malicious, and the current HTTP response is a 403 status code, indicating that direct content retrieval is being blocked by the hosting provider. The domain is classified as a brand‑impersonation campaign targeting Robinhood, with the explicit intent of credential phishing. Publicly observable artifacts stop at the HTTP 403 response; the exact phishing landing page content, credential collection mechanisms, or any associated command‑and‑control infrastructure have not been disclosed in open sources. Consequently, while the infrastructure is confirmed active, the full scope of the phishing workflow—including any redirects, payloads, or exfiltration endpoints—remains unknown pending deeper investigation or sink‑hole data. Defenders should immediately block 104.18.40.47 and the fully qualified domain name robinhoodloginn.gitbook.io at perimeter and DNS layers. Continuous monitoring of Cloudflare‑hosted domains that mimic Robinhood branding is advised, and any inbound traffic to the IP should be logged and, where possible, redirected to a safe sinkhole for further analysis. End‑user awareness campaigns should highlight the legitimate Robinhood login URL and advise users to verify TLS certificates and domain spelling before entering credentials.

VirusTotal
VirusTotal
17 det.
URLQuery
URLQuery
3 threat alerts
رادار CF
ضار
شهادة TLS
Google Trust Services / WE1 7d
العمر
5 mo
الحالة المرصودة
آخر نشاط معروف 307
PhishDestroy
قائمة الإتلاف
مدرج
نطاق تغطية البيانات VirusTotal 17 / 94 URLQuery 3 threat-system alerts PhishStats لم يتم التحقق منها OTX no community references رادار CF provider verdict: malicious URLScan capture not submitted URLScan verdict التقييم غير متاح حجب عناوين DNS لم يتم التحقق منها TLS valid certificate, 7d WHOIS 5 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS robinhoodloginn.gitbook.io malicious Sinkholed
DigiCert UltraDNS robinhoodloginn.gitbook.io malicious Sinkholed
CIRA Canadian Shield DNS robinhoodloginn.gitbook.io malicious Sinkholed
CF Cloudflare Radar Verdict ضار
Phishing Security threats Phishing

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
9/11

تغطية قوائم الحظر

١٠ مصادر · تمت المزامنة 10/08/2026

المخطط الزمني للاكتشاف

الملاحظات المحفوظة بترتيب زمني.

  1. Cloudflare Radar

    Cloudflare Radar: رُصد أول مرة بالحالة https://radar.cloudflare.com/scan/ea586401-5846-42e7-8562-7f9a081446ba

لقطة محفوظة

معلومات النطاق

النطاق
الخادم / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
Registrar (base domain) Cloudflare US(US)
عنوان IP 104.18.40.47 CDN
الموقع الجغرافيCA Toronto, CA
الشبكةAS13335 · Cloudflare, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Registration (base domain)gitbook.io · تم إنشاؤه 24/03/2026 (138d)
حالة HTTP307 Temporary Redirect
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
تاريخ أول اكتشاف15/06/2026
خوادم الأسماءhugh.ns.cloudflare.com
بصمة TLS
رصد TLSصالح منذ 19/05/2026فُحص في 09/07/2026
الأسماء البديلة لموضوع TLSgitbook.io
شهادة TLS
Valid transport encryption · صادرة عن Google Trust Services / WE1 · valid for 7 days

التقنيات

حُدّدَت تقنيتان عاليتا الثقة

Cloudflare HTTP/3
Cloudflare Radar
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

17 / قام موردو الأمان 94 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 16 detections
ADMINUSLabs
BitDefender
Chong Lua Dao
CyRadar
ESET
Emsisoft
Forcepoint ThreatSeeker
G-Data
Gridinsoft
كاسبرسكي
Lionic
MalwareURL
نتكرافت
Seclookup
سوفوس
VIPRE

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان

أدوات خارجية

HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/robinhoodloginn.gitbook.io"
  title="PhishDestroy threat report for robinhoodloginn.gitbook.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>