booking-com-dubai--packages[.]webflow[.]io
“Suspected Phishing | Cloudflare”
booking-com-dubai--packages.webflow.io — İçerik kullanılamıyor. Marka kimliğine bürünme: Genericcloudflare. Kanıt özeti: VirusTotal 10/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 80/100. Kayıt kuruluşu: Webflow.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
The domain booking-com-dubai--packages.webflow.io was registered on June 12, 2026 through the Webflow platform and currently resolves to the IP address 104.18.36.248. Analysis indicates that the domain is actively being used in a delivery‑scam campaign, as reflected by its classification in the threat profile and by its elevated risk rating. The domain has been added to one security blocklist and is blocked by the PhishDestroy service, demonstrating that at least one commercial mitigation platform has taken action against it.
VirusTotal records show that 10 of 91 scanned security vendors have flagged the domain, providing additional independent confirmation of malicious activity. No public information is available regarding the site’s SSL certificate, HTTP response codes, or page title, leaving those aspects of the infrastructure unverified at this time. The limited detection footprint—one blocklist entry and a modest number of vendor flags—suggests that the campaign may be in an early deployment stage or that the hosting provider’s reputation shields the payload from broader detection.
Defenders should prioritize network‑level blocking of the IP 104.18.36.248 and the domain name, incorporate the domain into existing phishing‑scam detection rules, and monitor for any new indicators that may emerge from the Webflow hosting environment. Ongoing observation of the domain’s DNS resolution and any changes to its hosting configuration is recommended, as shifts in infrastructure could broaden the attack surface. Given the active status and the elevated risk level, immediate remediation actions are warranted to prevent potential victim exposure to the delivery‑scam operation.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
Teknolojiler · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of booking-com-dubai--packages.webflow.io · checked Jul 29, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin