auth[.]booking-comarab-dubai-shopping[.]webflow[.]io
“auth.booking-comarab-dubai-shopping.webflow.io”
auth.booking-comarab-dubai-shopping.webflow.io — 内容不可用. 证据摘要: VirusTotal 2/91 (Fortinet, Webroot); PhishDestroy score 56/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain auth.booking-comarab-dubai-shopping.webflow.io indicates that it is being leveraged for credential harvesting. The domain was registered on June 12, 2026 through the Webflow platform, a service frequently abused for short‑lived malicious sites. VirusTotal scans show that 2 of 91 security vendors have flagged the domain, suggesting that at least a minority of detection engines recognize malicious behavior.
The domain appears on a single security blocklist and has been explicitly blocked by the PhishDestroy feed, reinforcing the assessment that it is being used for phishing‑related activities. No public evidence has been provided regarding its IP address, hosting ASN, SSL certificate details, HTTP response codes, Safe Browsing status, Open Threat Exchange references, or page title, so those attributes remain unverified at this time. Defenders should treat any communications originating from or referencing this domain as hostile.
Recommended actions include adding the full hostname to web filtering and intrusion detection rule sets, monitoring outbound traffic for connections to the Webflow hosting range, and updating endpoint protection signatures to incorporate the two vendor detections reported by VirusTotal. Continuous re‑evaluation is advised as additional intelligence, such as URL‑based payloads or sinkhole data, becomes available.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。