robinhood-login-6[.]gitbook[.]io
“Ro̾binhood Login - Log In To - My Account”
Zusammenfassung der Beweislage
The domain robinhood-login-6.gitbook.io is currently flagged as a high‑risk brand‑impersonation site targeting the Robinhood financial service. Active monitoring shows the site is still live, serving HTTP 200 responses, and has been catalogued by Google Safe Browsing with a SOCIAL_ENGINEERING classification. The domain appears on a single external blocklist and has been blocked by PhishDestroy.
Technical analysis reveals the domain is hosted behind Cloudflare’s edge network. DNS resolution points to 104.18.40.47, an IP address located in Canada and owned by Cloudflare, Inc. The authoritative nameservers are dahlia.ns.cloudflare.com and hugh.ns.cloudflare.com. TLS termination uses a certificate issued by Google Trust Services under the WE1 identifier, and HTTP/3 is enabled. Detected web technologies include GitBook, Google Cloud services, HSTS enforcement, and Google Cloud Trace.
The site’s visible page title reads “Ro̾binhood Login - Log In To - My Account”, a clear attempt to mimic Robinhood’s legitimate login portal. VirusTotal reports 14 out of 95 antivirus engines flagging the domain as malicious, reinforcing the phishing suspicion. The domain was originally registered on March 30 2014 through Cloudflare, Inc., indicating long‑standing control of the registration. While the hosting and certificate appear legitimate, the malicious intent is inferred from the branding, page title, and detection data; no additional payload or credential‑harvesting infrastructure has been publicly observed.
Defenders should add robinhood-login-6.gitbook.io to network blocklists and enforce URL filtering to prevent user access. Continuous monitoring of DNS queries for the associated IP and nameservers can aid in early detection of related infrastructure reuse. Organizations using Robinhood services should augment user awareness training with specific references to this impersonation pattern and encourage verification of URL authenticity before credential entry.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
Technologien
6 Technologien mit hoher Konfidenz erkannt
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of robinhood-login-6.gitbook.io · checked Jul 12, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt