your-booking-com-dubai.webflow.io
“404 - Page not found”
your-booking-com-dubai.webflow.io — Контент недоступний (HTTP 404). Уособлення бренду: Unknown; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); PhishDestroy score 77/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Зведення доказів
The domain your-booking-com-dubai.webflow.io is currently active and has been classified as a generic phishing site with an elevated risk rating. VirusTotal analysis shows that nine out of ninety‑one security vendors have flagged the domain, indicating that multiple detection engines have identified malicious characteristics. The domain also appears on a single external blocklist and is explicitly blocked by the PhishDestroy service, reinforcing its reputation as a threat vector.
Registration data reveals that the domain was created through the Webflow platform, a popular website‑building service that often provides shared hosting and SSL certificates by default. DNS resolution points to the IP address 104.18.36.248, which belongs to the Cloudflare network and is commonly used for content delivery and mitigation services; however, the same IP hosts a variety of unrelated legitimate sites, making IP‑based blocking less precise. No additional intelligence such as page titles, SSL certificate details, or HTTP response codes is presently available, so the exact content and lure technique employed by the site remain unverified.
Defenders should prioritize adding the domain to local blocklists, updating network intrusion prevention signatures, and monitoring outbound connections to the associated IP range. Given the multi‑vendor detection and blocklist presence, continuous observation of traffic to this domain is advised, and any user‑initiated requests to the URL should be blocked or redirected to a warning page. Organizations using web filtering should ensure that the domain is included in their threat feeds to mitigate potential credential harvesting attempts.
Forensic History & Detection Timeline
-
Domain Status Transition Jul 29, 2026 · 07:00 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Jul 29, 2026 · 06:44 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
104.18.36.248.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: dead_http: raw=http_404; http=404; via=https_proxy; server=cloudflare
Технології · 2 identified
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of your-booking-com-dubai.webflow.io · checked Jul 29, 2026
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 12.06.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога