booking-dubai-desert-safaria.webflow.io
“Book Dubai Desert Safari with Booking.com – Thrilling Adventures Await!”
booking-dubai-desert-safaria.webflow.io — 内容不可用 (HTTP 404). 品牌冒充:Unknown; 诈骗类型:Impersonation. 证据摘要: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); CF Radar malicious; PhishDestroy score 92/100. 注册商: Webflow.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
This domain is flagged as a confirmed phishing site based on multiple security vendor detections and blocklist presence. VirusTotal reports that 14 of 91 security vendors flag this domain as malicious, indicating broad consensus across the security community. The domain is actively blocked by PhishDestroy and appears on 1 security blocklist, confirming its inclusion in threat intelligence feeds. The domain resolves to IP address 104.18.36.248, which is associated with Webflow's hosting infrastructure, and the domain was registered through Webflow as the registrar.
This hosting arrangement is legitimate infrastructure being misused for phishing purposes, as Webflow is a legitimate web hosting and design platform. The domain booking-dubai-desert-safaria.webflow.io follows a pattern suggestive of travel or event booking scams, leveraging the reputable Dubai desert safari tourism theme to deceive victims. However, the exact page content, brand impersonated, and scam kit used have not been analyzed, so the specific targeting or lure strategy remains unconfirmed. The domain is currently active and accessible, posing an ongoing risk to users who may encounter it through search results, email links, or social media posts.
Defenders should immediately add this domain to blocklists and URL filtering policies, monitor for related subdomains or variations under the same Webflow.io subdomain, and investigate any associated email campaigns or traffic logs that may indicate compromise of user credentials or financial data. Given the elevated risk level and active status, users should be warned against visiting this domain or entering any personal information. The domain's association with Webflow infrastructure means takedown requests should be directed to Webflow's abuse team, though the phishing site may be quickly recreated under a new subdomain after removal. Continuous monitoring of newly registered subdomains under webflow.
网络安全情报
Forensic History & Detection Timeline
-
Domain Status Transition Jul 29, 2026 · 07:15 UTCDomain state transitioned from alive to dead.
-
Threat First Observed Jul 29, 2026 · 06:48 UTCDomain ingestion complete. Initial state is marked as unknown pointing to IP
104.18.36.248.
威胁响应 Pipeline
公共封禁名单状态
Evasion analysis
Cloaking suspected: scanner and victim titles differ
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not yet scanned
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: dead_http: raw=http_404; http=404; via=https_proxy; server=cloudflare
技术 · 2 identified
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of booking-dubai-desert-safaria.webflow.io · checked Jul 29, 2026
社区报告
由 1 名社区成员报告;首次发现于 2026年6月12日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。