services-superb-site-a759fb[.]webflow[.]io
“Service's Superb Site”
services-superb-site-a759fb.webflow.io — لم يتم التحقق منها. انتحال العلامة التجارية: Xfinity; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. مسجّل النطاق: Webflow.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, services-superb-site-a759fb.webflow.io, is assessed as an elevated-risk credential theft phishing site. Analysis indicates the infrastructure was designed to harvest user login credentials through deceptive service portals, likely mimicking legitimate platforms to exploit trust. The threat type is specifically credential theft, not generic phishing, as evidenced by the page title 'Service's Superb Site' and the structured deployment through a content management system known for facilitating such attacks. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 104.18.36.248 and is hosted on Webflow, a platform frequently abused for phishing campaigns. The SSL certificate is issued by Google Trust Services, providing a false sense of security to potential victims. Security vendor detections on VirusTotal report 17/95 flags, while Gridinsoft assigns a trust score of 0/100. The domain appears on at least one security blocklist and is currently offline, though this does not preclude future reactivation. No creation date metadata was provided, but the use of a subdomain under webflow.io suggests rapid deployment typical of short-lived phishing operations. Mitigation steps for credential theft threats include immediate blacklisting of the domain and associated IP in perimeter security controls. Network defenders should inspect logs for connections to 104.18.36.248 and monitor for similar Webflow-hosted subdomains exhibiting comparable naming patterns. User awareness training should emphasize the risks of entering credentials on pages with mismatched branding or unexpected service portals, particularly those hosted on content management platforms. Organizations are advised to enforce multi-factor authentication and credential monitoring to detect unauthorized access attempts stemming from harvested credentials. Given the domain's current offline status, continuous monitoring for reactivation is recommended.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 4 identified
jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of services-superb-site-a759fb.webflow.io · checked Jun 25, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب