bookiingcomm-dubai.webflow.io
“404 - Page not found”
bookiingcomm-dubai.webflow.io — 内容不可用 (HTTP 404). 品牌冒充:Unknown; 诈骗类型:Impersonation. 证据摘要: VirusTotal 6/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Fortinet); PhishDestroy score 68/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
Analysis as of July 29 2026 indicates that the domain bookiingcomm-dubai.webflow.io is actively used for phishing. The site is hosted on the Webflow platform, as indicated by the registrar information, and resolves to the IP address 104.18.36.248, which belongs to Cloudflare's network commonly used by Webflow customers. The domain has been added to a security blocklist and is flagged by the PhishDestroy service, confirming its malicious intent. VirusTotal scans show that six out of ninety‑one antivirus and URL‑reputation engines have identified the domain as malicious, providing independent corroboration of the phishing classification.
No additional public intelligence such as Safe Browsing alerts, OTX mentions, or SSL certificate anomalies are currently available. The lack of a disclosed page title or content analysis means the exact phishing lure cannot be determined at this time. Defenders should continue to block the domain at network perimeter devices and DNS resolvers, and add it to local threat intelligence feeds.
Monitoring of the associated IP address for any further malicious activity is advised, as the address is shared among many legitimate Webflow sites, which could complicate attribution. Organizations should also consider notifying users of potential phishing attempts that reference Dubai‑related services, given the domain’s naming pattern, and encourage verification of any unsolicited communications that reference the domain. Incident response teams should treat any credential submissions to this domain as compromised and initiate standard credential reset and account monitoring procedures.
Forensic History & Detection Timeline
-
Domain Status Transition Jul 29, 2026 · 07:00 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Jul 29, 2026 · 06:41 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
104.18.36.248.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking & traffic-distribution check
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: dead_http: raw=http_404; http=404; via=https_proxy; server=cloudflare
技术 · 2 identified
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bookiingcomm-dubai.webflow.io · checked Jul 29, 2026
社区报告
由 1 名社区成员报告;首次发现于 2026年6月12日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。