الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 20. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

attmessageattyahoomail[.]weeblysite[.]com

“Home | att@message.att-mail.com”

حكم التهديد حرجة 100/100 درجة الأدلة
التوفر المحتوى غير متوفر لم يكن المحتوى متاحًا في الملاحظة الأخيرة
اكتشافات VirusTotal: 20/95 انتحال العلامة التجارية: AT&T
23/11/2025 AT&T CDN
ملخص التقرير

attmessageattyahoomail.weeblysite.com — المحتوى غير متوفر. انتحال العلامة التجارية: AT&T; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 20/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. مسجّل النطاق: Safenames.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
AD65AD37
الدرجة
100/100

This domain is flagged as a high-risk phishing infrastructure specifically designed for AT&T brand impersonation. Analysis indicates the site was constructed to deceive users into believing they are interacting with legitimate AT&T communications, as evidenced by the page title 'Home | att@message.att-mail.com' and the use of official branding elements. The threat type is classified as brand impersonation with credential harvesting as the likely objective, targeting AT&T customers through fraudulent login portals or account verification scams. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain attmessageattyahoomail.weeblysite.com was created on December 19, 2012, though the phishing content appears to have been deployed more recently. It resolves to IP address 74.115.51.54, hosted on AS27647 (Weebly, Inc.) in the United States, and uses an SSL certificate issued by Google Trust Services (WE1). The domain is registered through Safenames Ltd and is currently flagged by 20 out of 95 security vendors on VirusTotal. It appears on two security blocklists and is explicitly labeled as phishing by Google Safe Browsing. Additionally, the domain has been blocked by PhishDestroy and PhishingDB, further corroborating its malicious classification. Mitigation against this brand impersonation threat requires a multi-layered approach. Network-level protections should include blocking the domain and its resolving IP (74.115.51.54) at firewalls and DNS resolvers. Security teams should update endpoint detection rules to flag any attempts to access this domain or similar Weebly-hosted subdomains impersonating telecommunications providers. User awareness training should emphasize verifying sender domains in emails, particularly those requesting account credentials or personal information. AT&T customers should be advised to access their accounts exclusively through the official website (att.com) or verified mobile applications, and to report any suspicious communications to the company's official fraud reporting channels. Organizations should monitor for compromised credentials associated with this campaign, as phishing sites of this nature often harvest and exfiltrate login data in real time.

VirusTotal
VirusTotal
20 det.
رادار CF
ضار
ScamAdviser
Scamadviser
1/100
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -96d
العمر
13.7 yr
الحالة المرصودة
المحتوى غير متوفر
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 20 / 95 URLQuery تم تخزين التقرير - الحكم التفصيلي معلق PhishStats checked — no match recorded OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 166 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها Scamadviser 1/100
مؤشرات الأمان
SA Scamadviser Warnings 1/100
The owner of the website is using a service to hide their identity on WHOIS According to Tranco this site has a low rank This site is a website within another website This website uses a generic platform to host its website We tried to analyze the content of the site but failed This website has been reported as Malicious by IPQS This website has been reported for Phishing by IPQS This website has been reported as Suspicious by IPQS
The SSL certificate is valid This website is (very) old
استخبارات أمن الشبكات
CF Cloudflare Radar Verdict ضار
Phishing Security threats Phishing

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
17/18

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Home | att@message.att-mail.com
Impersonates
Google
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Google Trust Services / WE1

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Att report ↗
Google Safe Browsing تم وضع علامة عليها Social engineering checked 25/02/2026
الخادم / ASN cloudflare · AS27647 WEEBLY, US
IP Context Cloudflare shared edge origin IP hidden لا تُنسب سمعة Edge-IP إلى هذا المجال.
Registrar (base domain) Safenames GB(GB)
عنوان IP 74.115.51.55 CDN
الموقع الجغرافيUS Oakland, US
الشبكةAS27647 · Weebly, Inc.
يتم إخفاء عنوان IP الأصلي خلف وكيل CDN. تحتوي نتائج IP العكسي لعنوان الحافة على مستأجرين غير مرتبطين؛ يتطلب العثور على المصدر نظام أسماء النطاقات السلبي أو بيانات شفافية الشهادة.
Registration (base domain)weeblysite.com · تم إنشاؤه 19/12/2012
الوقت حتى أول تعذّر للوصول 98 days
ما الذي نحتسبه الوقت المنقضي من أول تقرير عن إساءة الاستخدام المخزن إلى الملاحظة الأولى بأن المحتوى غير متوفر. هذا لا يحدد السبب.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف23/11/2025
DOM Analysisanalyzed 29/07/2026score 0/1001 brand signal
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://attmessageattyahoomail.weeblysite.com/
خوادم الأسماءns-1375.awsdns-43.orgns-1854.awsdns-39.co.ukns-510.awsdns-63.comns-522.awsdns-01.net
TLS Fingerprint
TLS Observationvalid from 10/02/2026scanned 11/03/2026
TLS SAN Domainsweeblysite.com
ICANN OVERSIGHT Registration: weeblysite.com

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain weeblysite.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
التقنيات · 2 identified
Amazon Web Services
PaaS

Amazon Web Services (AWS) is a comprehensive cloud services platform offering compute power, database storage, content delivery and other functionality.

aws.amazon.com ثقة 100٪
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com ثقة 100٪
Detected via رادار Cloudflare · Wappalyzer engine
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

20 / قام موردو الأمان 95 بوضع علامة على هذا المجال
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safebrowsing
Gridinsoft
كاسبرسكي
Lionic
MalwareURL
Phishing Database
Quick Heal
سوفوس
Trustwave
VIPRE
Webroot

الأدلة المؤرشفة

Wayback Machine Snapshot
لقطة تاريخية متاحة لمراجعة الأدلة
View Archive

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/attmessageattyahoomail.weeblysite.com"
  title="PhishDestroy threat report for attmessageattyahoomail.weeblysite.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.