staging[.]bookingcomdubaithingstodoes[.]webflow[.]io
“staging.bookingcomdubaithingstodoes.webflow.io”
staging.bookingcomdubaithingstodoes.webflow.io — Контент недоступен. Сводка доказательств: VirusTotal 2/91 (alphaMountain.ai, Fortinet); PhishDestroy score 56/100. Регистратор: Webflow.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain staging.bookingcomdubaithingstodoes.webflow.io shows that it was created on June 12, 2026 and registered through the Webflow platform, a legitimate website‑building service that provides shared hosting for custom subdomains. The domain is currently listed on one public security blocklist and has been actively blocked by the PhishDestroy feed, indicating that at least one operational anti‑phishing system has identified it as malicious. VirusTotal scans report that two of ninety‑one security vendors flagged the domain, which reinforces the suspicion that the site is being used for malicious purposes despite the relatively low detection count. No additional metadata such as IP address, ASN, country, SSL certificate details, HTTP response codes, or page title is available in the supplied intelligence, and the page content has not been publicly analysed.
Consequently, the precise nature of the phishing payload, the targeted brand, and the user‑experience presented on the site remain uncertain. Defenders should treat the domain as a high‑confidence indicator of a phishing campaign and incorporate it into DNS and proxy filtering rules to block outbound connections. Network logs should be examined for any recent requests to the Webflow subdomain, especially from internal hosts that may have accessed it after the creation date.
Because the domain leverages a reputable hosting provider, additional scrutiny of traffic to other Webflow‑hosted subdomains may be warranted to detect potential reuse of the same infrastructure. Continuous monitoring of threat‑intel feeds for updates on the domain, as well as periodic re‑scans on VirusTotal or similar platforms, will help confirm whether the detection count changes or new indicators emerge.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание