robinhood-invests-log-in[.]webflow[.]io
“robinhood invests log in”
robinhood-invests-log-in.webflow.io — 未验证. 品牌冒充:Robinhood; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 2 alerts; URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 100/100. 注册商: MarkMonitor.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, robinhood-invests-log-in.webflow.io, poses a high-risk brand impersonation threat targeting Robinhood users. The site mimics the legitimate Robinhood login interface, tricking visitors into entering their credentials. Once submitted, these credentials are harvested by threat actors, enabling unauthorized access to financial accounts, potential fund transfers, or identity theft. The page title, 'robinhood invests log in,' reinforces the deception by closely resembling official Robinhood branding, increasing the likelihood of successful credential theft. Analysis indicates this domain is part of a coordinated phishing infrastructure. The domain was created on March 06, 2026, and is registered through MarkMonitor, Inc., a registrar commonly used for both legitimate and malicious domains. It resolves to the IP address 172.64.151.8, hosted on Cloudflare's network (AS13335), which is frequently leveraged to obscure the true origin of phishing sites. VirusTotal detections show that 20 out of 95 security vendors flag this domain as malicious, while Google Safe Browsing classifies it as phishing. Additionally, the domain appears on one security blocklist, and its SSL certificate is issued by Google Trust Services, further masking its malicious intent under a veneer of legitimacy. Individuals who visited this domain or entered credentials should take immediate action to mitigate risk. First, change the password for the affected Robinhood account and enable multi-factor authentication if not already active. Monitor the account for unauthorized transactions or suspicious activity, and report any anomalies to the financial service provider. If personal or financial information was submitted, consider placing a fraud alert or credit freeze with major credit bureaus to prevent identity theft. Finally, scan the device used to access the site for malware, as phishing pages may deploy additional payloads to compromise the system further.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | robinhood-invests-log-in.webflow.io |
malicious | Sinkholed |
| DNS4EU | robinhood-invests-log-in.webflow.io |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。