bookingcomdubaiishoppiinng[.]webflow[.]io
“404 - Page not found”
bookingcomdubaiishoppiinng.webflow.io — Inhalt nicht verfügbar. Zusammenfassung der Beweislage: VirusTotal 2/91 (alphaMountain.ai, Fortinet); PhishDestroy score 56/100. Registrar: Webflow.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis of bookingcomdubaiishoppiinng.webflow.io indicates that the domain is actively being used for a generic phishing campaign. The domain was registered on June 12, 2026 through the Webflow platform, a service that provides hosted website creation and content delivery. Network resolution shows the domain pointing to IP address 104.18.36.248, which belongs to a Content Delivery Network (CDN) commonly used for legitimate web services, suggesting that the attacker is leveraging a reputable hosting provider to obscure malicious activity. VirusTotal reports that 2 of 91 security vendors have flagged the domain, confirming that at least a minority of scanners have identified suspicious behavior associated with the host.
The domain is listed on a single security blocklist and is explicitly blocked by the PhishDestroy threat‑remediation service, providing additional corroboration of its malicious intent. No public evidence is available regarding the site’s SSL certificate, HTTP response codes, or page title, and the content of the landing page has not been publicly disclosed in the supplied intelligence. Consequently, defenders cannot assess the exact payload or credential‑harvesting mechanisms employed, but the presence of multiple independent detections warrants immediate defensive action.
Organizations should add the domain to web‑filter allow‑deny lists, configure proxy or firewall rules to block outbound connections to 104.18.36.248 for user agents that do not require CDN services, and monitor DNS query logs for any lookups of the domain or its associated IP. Incident response teams should also consider scanning internal endpoints for indicators of compromise that match the two vendor detections reported by VirusTotal, and update phishing awareness training to reference the newly observed domain pattern. Continuous re‑evaluation of the domain’s status is advised, as additional detections or content analysis may emerge over time.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
Technologien · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of bookingcomdubaiishoppiinng.webflow.io · checked Jul 29, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt