cdn[.]bookkingcoom--dubai[.]webflow[.]io
“cdn.bookkingcoom--dubai.webflow.io”
cdn.bookkingcoom--dubai.webflow.io — Contenu indisponible. Résumé des preuves: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 65/100. Bureau d’enregistrement: Webflow.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Investigative analysis as of July 29, 2026 indicates that the domain cdn.bookkingcoom--dubai.webflow.io was registered on June 12, 2026 through the Webflow platform. The domain resolves to the IP address 104.18.36.248, an address belonging to the Cloudflare network that is commonly used for content delivery and web hosting. Within a month of its creation the domain was added to the PhishDestroy blocklist and appears on an additional security blocklist, reflecting early detection by threat‑mitigation services. VirusTotal scans show that three out of ninety‑one antivirus and URL‑reputation engines flagged the domain as malicious, providing independent corroboration of its abusive intent.
The limited detection footprint suggests a small‑scale or newly deployed phishing campaign that has not yet achieved broad distribution. No public SSL certificate details, HTTP status codes, or page title information have been disclosed, leaving the exact payload and targeted brand unspecified. The use of a Webflow sub‑domain together with Cloudflare hosting is a known tactic that affords rapid deployment and obscures the underlying infrastructure.
Defenders should incorporate the domain into web‑filtering and DNS‑sinkhole policies, prioritize updating blocklists that reference the address, and monitor associated IP ranges for similar patterns. Continuous re‑assessment is recommended, as the domain may evolve or be leveraged for additional malicious pages. The current evidence supports an elevated risk rating and warrants active remediation.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif