booking----tour--dubai[.]webflow[.]io[.]webflow[.]io
“booking----tour--dubai.webflow.io.webflow.io”
booking----tour--dubai.webflow.io.webflow.io — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 4/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, LevelBlue); PhishDestroy score 65/100. مسجّل النطاق: Webflow.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of booking----tour--dubai.webflow.io.webflow.io shows a newly registered Webflow sub‑domain created on 12 June 2026. The registrar information confirms the site was provisioned via the Webflow hosting service, which is frequently abused for short‑lived phishing infrastructure. VirusTotal has recorded 4 of 91 scanned security vendors flagging the domain as malicious, indicating that a minority of vendors have identified suspicious behavior, though the majority have not flagged it. The domain is listed on a single external security blocklist and is actively blocked by the PhishDestroy filtering service, providing additional evidence of malicious intent.
No public IP address, SSL certificate details, HTTP response codes, or Safe Browsing verdicts are currently available in the intelligence feed, limiting the ability to assess the underlying hosting environment or the presence of TLS encryption. The page title and any content‑level indicators have not been disclosed, so the specific lure or credential‑harvesting technique remains unknown. Given the combination of a recent creation date, a Webflow‑based sub‑domain, multi‑vendor detections, and inclusion on a phishing‑focused blocklist, the site should be treated as an elevated‑risk phishing resource.
Defenders should add the full domain to perimeter block lists, enforce URL filtering to deny outbound connections, and monitor DNS logs for queries to the domain. Incident response teams should also consider isolating any user‑initiated connections and reviewing recent authentication attempts for compromised credentials. Continuous re‑evaluation is advised as additional threat intel, such as host‑level analysis or page content extraction, may become available.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب