bookiingcom-dubaei.webflow.io
“404 - Page not found”
bookiingcom-dubaei.webflow.io — 内容不可用 (HTTP 404). 品牌冒充:Unknown; 诈骗类型:Impersonation. 证据摘要: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, CyRadar, Fortinet, Lionic); PhishDestroy score 68/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
Analysis on July 29, 2026 confirms that the domain bookiingcom-dubaei.webflow.io is actively used for phishing. The site is hosted on the Webflow platform, as indicated by the registrar information stating registration through Webflow. DNS resolution points to the IPv4 address 172.64.151.8, which is part of the Fastly edge network commonly used for content delivery. The domain has been intercepted by the PhishDestroy mitigation service, which placed it on a phishing blocklist.
VirusTotal has recorded that six of ninety‑one scanning engines returned a malicious verdict, reinforcing the suspicion of abusive activity. Additionally, the domain appears on one external security blocklist, further corroborating its reputation as a threat vector. The available evidence does not reveal the specific landing page content, login form structure, or any SSL certificate details; these aspects remain unverified pending deeper content inspection. No Safe Browsing or Open Threat Exchange alerts are currently reported for this host, and no additional intelligence sources have published indicators beyond the listed blocklists.
Defenders should block all outbound and inbound traffic to bookiingcom-dubaei.webflow.io at the network perimeter, deny DNS resolution where possible, and add the IP address 172.64.151.8 to host‑based deny lists. Continuous monitoring of Webflow‑hosted subdomains for similar patterns is advised, as the platform can be leveraged to spin up new phishing sites rapidly. Organizations using email filtering should flag any messages that reference the domain or its sub‑resources, and security teams should update URL reputation feeds with the observed indicators to improve early detection.
Forensic History & Detection Timeline
-
Domain Status Transition Jul 29, 2026 · 07:00 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Jul 29, 2026 · 06:44 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
172.64.151.8.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: dead_http: raw=http_404; http=404; via=https_proxy; server=cloudflare
技术 · 2 identified
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bookiingcom-dubaei.webflow.io · checked Jul 29, 2026
社区报告
由 1 名社区成员报告;首次发现于 2026年6月12日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。