api[.]booking-dubaii-shopping[.]webflow[.]io
“api.booking-dubaii-shopping.webflow.io”
api.booking-dubaii-shopping.webflow.io — Contenu indisponible. Résumé des preuves: VirusTotal 1/91 (Fortinet); CF Radar malicious; PhishDestroy score 55/100. Bureau d’enregistrement: Webflow.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain api.booking-dubaii-shopping.webflow.io was registered on June 12, 2026 through the Webflow platform. Automated analysis shows that the hostname resolves to the IP address 172.64.151.8, which is owned by Cloudflare’s network and commonly used for hosting static sites. The domain appears on a single security blocklist and has been flagged by the PhishDestroy service. VirusTotal has recorded a single positive detection out of 91 scanned vendors, indicating that at least one security product has identified malicious behavior associated with the host.
No additional public blocklists or safe‑browsing feeds currently list the domain, and no evidence of SSL/TLS certificates, HTTP response codes, or page title information is available in the intelligence set. Consequently, the precise content of the site, its payload, and the targeted brand cannot be confirmed at this time. The available indicators suggest that the domain is being used for a generic phishing campaign, consistent with the listed threat type. Defenders should consider adding the IP address 172.64.151.8 to network‑level deny lists, monitor DNS queries for the fully qualified domain name, and enforce existing phishing‑filtering rules that reference the PhishDestroy block.
Continuous re‑scanning with VirusTotal and other multi‑engine services is recommended to capture any changes in detection status. Organizations that employ Webflow‑based hosting should verify that the domain is not an authorized sub‑site of their own infrastructure. Until further evidence emerges, the domain should be treated as malicious and blocked in outbound and inbound traffic controls.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif