learn[.]bookingcomrestaurants-dubai[.]webflow[.]io
“learn.bookingcomrestaurants-dubai.webflow.io”
learn.bookingcomrestaurants-dubai.webflow.io — Contenu indisponible. Résumé des preuves: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 65/100. Bureau d’enregistrement: Webflow.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain learn.bookingcomrestaurants-dubai.webflow.io was registered on June 12, 2026 through the Webflow platform, a service that frequently hosts user‑generated sites. Within weeks of creation the domain was added to a security blocklist and was subsequently blocked by the PhishDestroy sinkhole, indicating that it is being used for malicious purposes. VirusTotal scans show that three of ninety‑one antivirus engines flagged the domain, confirming that at least a minority of detection products consider the site suspicious.
The domain currently appears on one public blocklist, reinforcing the assessment that it is part of active phishing infrastructure. No additional intelligence such as IP address, ASN, or SSL certificate details has been publicly released, so the hosting environment and network location remain unknown. The limited detection coverage combined with the early blocklist entry suggests a short‑lived, opportunistic campaign, likely targeting users of the Booking.com restaurant service by exploiting the Webflow sub‑domain pattern.
Defenders should add the domain to local deny lists, monitor DNS queries for the exact name, and consider extending blocklist subscriptions that already flag it. Because the site is hosted on a shared Webflow infrastructure, any compromise of the underlying account could be revoked by the hosting provider; contacting Webflow for takedown may expedite remediation. Until further evidence emerges, the domain should be treated as an active, elevated‑risk phishing indicator.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif