backend[.]bookkingcoom--dubai[.]webflow[.]io
“backend.bookkingcoom--dubai.webflow.io”
Zusammenfassung der Beweislage
backend.bookkingcoom--dubai.webflow.io was registered on June 12, 2026 through the Webflow hosting service. The domain is currently active and resolves to a Webflow‑hosted site, indicating the attacker is leveraging a legitimate SaaS platform to obtain a trusted TLS certificate and reduce hosting costs. VirusTotal reports that three of ninety‑one scanning engines flagged the domain as malicious, which aligns with its appearance on a single public blocklist. The blocklist entry and the independent PhishDestroy block confirm that security communities have observed phishing‑related activity originating from this host.
No public information is available regarding the underlying IP address, ASN, or geographic location, and the page title has not been disclosed in the intelligence feed. Consequently, the precise content of the site cannot be verified, but the classification as a generic phishing site is supported by the vendor detections and blocklist inclusion. Defenders should add the fully qualified domain name to DNS‑based deny lists and configure web proxies to drop HTTP/HTTPS requests to the host. Network‑level filters that reference the known blocklist entry can also be employed.
Continuous monitoring of VirusTotal and other reputation services is advised, as additional detections may appear if the site expands its campaign. Because the domain uses a reputable hosting provider, traditional IP‑based blocking may be ineffective; domain‑level controls remain the most reliable mitigation. Organizations should remain vigilant for credential‑harvesting attempts that reference the “bookkingcoom” pattern, especially in communications purporting to originate from Dubai‑related services.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
Erkennungszeitleiste
-
Domainstatus
Erreichbar → Nicht erreichbar
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt