static[.]arabbooking-com-dubai-desert-safari[.]webflow[.]io
“static.arabbooking-com-dubai-desert-safari.webflow.io”
static.arabbooking-com-dubai-desert-safari.webflow.io — Contenido no disponible. Resumen de las pruebas: VirusTotal 2/91 (Fortinet, Kaspersky); CF Radar malicious; PhishDestroy score 56/100. Registrador: Webflow.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
static.arabbooking-com-dubai-desert-safari.webflow.io is currently classified as an elevated‑risk generic phishing domain. The domain was registered on 12 June 2026 through the Webflow platform, which is commonly used for legitimate site hosting but can also be abused for malicious campaigns. DNS resolution points to the IP address 104.18.36.248, an address associated with Cloudflare’s content‑delivery network, indicating the use of a shared hosting service that may obscure the true operator. The domain appears on one security blocklist and has been specifically blocked by the PhishDestroy service, reinforcing the assessment of malicious intent.
VirusTotal scans show that two of ninety‑one antivirus or URL‑reputation engines flagged the domain, providing independent corroboration of suspicious activity. The domain is marked as active and listed with an elevated risk level, but no public page title, brand reference, or detailed payload analysis has been released, so the exact phishing lure (for example, credential harvesting for a travel‑booking service) remains uncertain. Because the hosted content has not been examined, the specific brand being impersonated or the credential‑collection mechanism cannot be confirmed.
Defenders should treat any traffic to this host as hostile, enforce network‑level blocking, and monitor outbound connections for attempts to contact the associated IP. Continuous re‑evaluation is advised, as further analysis of the hosted content could reveal additional indicators of compromise or targeted brands. Organizations should also consider updating web‑filter rules to include the full domain string, employing sandbox or URL‑reputation checks for any retrieved pages, and remaining alert to user‑reported attempts to access similarly named travel‑booking pages.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.