cdn[.]bookkingcoom--dubai[.]webflow[.]io
“cdn.bookkingcoom--dubai.webflow.io”
cdn.bookkingcoom--dubai.webflow.io — 内容不可用. 证据摘要: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 65/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Investigative analysis as of July 29, 2026 indicates that the domain cdn.bookkingcoom--dubai.webflow.io was registered on June 12, 2026 through the Webflow platform. The domain resolves to the IP address 104.18.36.248, an address belonging to the Cloudflare network that is commonly used for content delivery and web hosting. Within a month of its creation the domain was added to the PhishDestroy blocklist and appears on an additional security blocklist, reflecting early detection by threat‑mitigation services. VirusTotal scans show that three out of ninety‑one antivirus and URL‑reputation engines flagged the domain as malicious, providing independent corroboration of its abusive intent.
The limited detection footprint suggests a small‑scale or newly deployed phishing campaign that has not yet achieved broad distribution. No public SSL certificate details, HTTP status codes, or page title information have been disclosed, leaving the exact payload and targeted brand unspecified. The use of a Webflow sub‑domain together with Cloudflare hosting is a known tactic that affords rapid deployment and obscures the underlying infrastructure.
Defenders should incorporate the domain into web‑filtering and DNS‑sinkhole policies, prioritize updating blocklists that reference the address, and monitor associated IP ranges for similar patterns. Continuous re‑assessment is recommended, as the domain may evolve or be leveraged for additional malicious pages. The current evidence supports an elevated risk rating and warrants active remediation.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。