booking-comduubai[.]webflow[.]io
“Suspected Phishing | Cloudflare”
booking-comduubai.webflow.io — Контент недоступний. Уособлення бренду: Genericcloudflare. Зведення доказів: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; PhishDestroy score 80/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of booking-comduubai.webflow.io indicates that the domain was registered on June 12, 2026 through the Webflow platform, a service commonly used for rapid site deployment. The domain resolves to the IP address 172.64.151.8, which is owned by Cloudflare’s edge network and does not provide direct insight into the underlying host. The domain appears on a single security blocklist and is listed by PhishDestroy as a blocked entry, reflecting that at least one reputable anti‑phishing feed has identified it as malicious. VirusTotal scans show that 10 of 91 security vendors have flagged the domain, reinforcing the suspicion of malicious activity.
The threat classification supplied is "generic phishing," and the risk level is marked as elevated with an active status, suggesting ongoing use. No additional public evidence such as page title, SSL certificate details, or Safe Browsing verdicts are provided, leaving the content of the site unverified. The limited number of blocklist entries and vendor detections may indicate that the campaign is relatively new, consistent with the recent registration date. However, the presence on PhishDestroy and multiple VirusTotal detections is sufficient for defensive operators to treat the domain as hostile.
Defenders should block any network traffic to booking-comduubai.webflow.io at the perimeter and update endpoint and web‑filter policies to include the domain and its resolved IP address. Continuous monitoring of the IP 172.64.151.8 for new associations is advised, as Cloudflare‑hosted domains can share infrastructure with other malicious sites. Organizations using Webflow should consider additional scrutiny of newly created subdomains that resolve to Cloudflare edges, especially when they appear on phishing feeds. Further investigation, such as retrieving the live page content and analyzing HTTP response headers, would clarify the exact phishing vector and aid in attribution.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of booking-comduubai.webflow.io · checked Jul 29, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога