bookingcom--dubaihotels.webflow.io
“404 - Page not found”
bookingcom--dubaihotels.webflow.io — Контент недоступен (HTTP 404). Олицетворение бренда: Unknown; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 12/91 (alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 86/100. Регистратор: Webflow.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
Analysis as of July 29 2026 shows that the domain bookingcom--dubaihotels.webflow.io is actively flagged by multiple security sources. The domain is registered through the Webflow service, a platform commonly used for rapid website deployment. It resolves to the IP address 104.18.36.248, an address that is shared across many Webflow‑hosted sites and therefore does not provide unique malicious attribution on its own.
The threat intelligence feed PhishDestroy has already blocked this domain, indicating prior detection of phishing‑related activity. Additionally, the domain appears on one external security blocklist, demonstrating that at least one independent reputation source considers it malicious. VirusTotal scans report that 12 of 91 security vendors have raised detections for the domain, confirming that a non‑trivial subset of scanning engines identify it as suspicious.
The available evidence does not include HTTP response codes, SSL certificate details, or specific page titles, so the exact content served by the site remains unverified. Defenders should treat the domain as malicious and block network communications to it, monitor DNS queries for the domain, and consider adding the associated IP address to deny lists only after confirming no legitimate services rely on that address within the organization. Continuous monitoring of the domain’s status on blocklists and VirusTotal is recommended, as further detections could refine the risk posture.
Forensic History & Detection Timeline
-
Domain Status Transition Jul 29, 2026 · 07:00 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Jul 29, 2026 · 06:44 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
104.18.36.248.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: dead_http: raw=http_404; http=404; via=https_proxy; server=cloudflare
Технологии · 2 identified
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bookingcom--dubaihotels.webflow.io · checked Jul 29, 2026
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 12.06.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание