ftp[.]comdubaibooking[.]webflow[.]io
“ftp.comdubaibooking.webflow.io”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
Analysis of ftp.comdubaibooking.webflow.io, first observed on June 12 2026, indicates that the site is being leveraged for generic phishing. The domain is hosted on Webflow’s infrastructure, a legitimate website‑building service, which allows threat actors to obtain sub‑domains with minimal registration friction. VirusTotal scans have returned three positive detections out of ninety‑one submitted security engines, confirming that at least a minority of AV products recognize malicious behavior associated with the host. Independent blocklist providers have added the domain to their feeds; PhishDestroy currently lists it as blocked, and one additional security blocklist references the address.
No public Safe Browsing verdict, OTX entry, or SSL certificate details are available in the open‑source record, and the page title or content has not been captured by automated crawlers. Consequently, the full scope of the phishing campaign—such as targeted brand, credential‑stealing forms, or victim geography—remains unknown. Defenders should treat the domain as hostile. Network‑level controls ought to deny outbound HTTP/HTTPS requests to the host, and DNS filtering should include the domain in deny‑list policies.
Security information and event management (SIEM) rules can be tuned to alert on any connection attempts to the IP ranges used by Webflow, especially when paired with user agents indicative of credential‑submission. Incident response teams should advise end users to disregard any unsolicited communications that reference “Dubai booking” or similar terms, as the domain appears crafted to exploit travel‑related expectations. Continuous monitoring of VirusTotal, PhishDestroy, and other blocklist feeds is recommended to capture any changes in detection counts or additional attribution. Until further forensic evidence is gathered, the domain should remain classified as an elevated‑risk phishing host and be blocked across enterprise security controls.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।