الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 11. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

mailin[.]goteal[.]io

حكم التهديد حرجة 83/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 11/91 انتحال العلامة التجارية: Bancolombia
24/03/2026 Bancolombia
ملخص التقرير

mailin.goteal.io — لم يتم التحقق منها. انتحال العلامة التجارية: Bancolombia; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 83/100. مسجّل النطاق: GoDaddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
8926B71C
الدرجة
83/100

The domain mailin.goteal.io has been identified as a generic phishing platform, designed to deceive users into disclosing sensitive credentials or executing unauthorized transactions. As of the latest assessment, the domain is confirmed offline, though prior activity suggests it was actively utilized in phishing campaigns targeting a broad range of victims without a specific brand impersonation focus. Analysis indicates the infrastructure was likely employed for credential harvesting or redirect-based attacks, though no singular brand or service was consistently mimicked during its operational period.

Technical indicators reveal the domain was flagged by 9 of 95 security vendors on VirusTotal, reflecting a high-confidence detection rate. It was registered through GoDaddy.com, LLC on June 28, 2016, and resolved to the IP address 52.44.87.47, hosted on Amazon Web Services (AWS) EC2 infrastructure in the us-east-1 region. The domain appears on at least one security blocklist, further corroborating its malicious classification. Historical DNS records and passive DNS analysis suggest the IP has been associated with multiple transient phishing domains, a common tactic to evade detection and maintain operational agility.

Current status confirms the domain has been taken offline, though residual risk remains due to the potential for reactivation or migration to alternative infrastructure. Organizations are advised to implement proactive measures, including blocking the domain and its associated IP at the network perimeter, updating endpoint protection rules to include the domain in deny lists, and monitoring for related indicators of compromise. Security teams should also review logs for prior interactions with the domain or IP, particularly in cases where users may have been exposed to phishing attempts. Given the domain's age and registration history, further investigation into related infrastructure is recommended to identify potential linked threats.

VirusTotal
VirusTotal
11 det.
DNS Security
5/14
رادار CF
ضار
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
10.1 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 11 / 91 URLQuery لم يتم التحقق منها PhishStats checked — no match recorded OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS 5/14 TLS منتهية الصلاحية أو غير متحقق منها WHOIS 123 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 5 / 14
Cloudflare Family Cloudflare Security Controld Adblock Controld Family Controld Malware
CF Cloudflare Radar Verdict ضار
Phishing
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: Amazon

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/15

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Bancolombia report ↗
الخادم / ASN Apache/2.4.52 (Ubuntu) · AS14618 Amazon.com, Inc.
سمعة عنوان IP abuse score 0/100 0 reports checked 13/08/2026
Registrar (base domain) GoDaddy US(US)
عنوان IP 52.44.87.47 US
الموقع الجغرافيUS Ashburn, US
الشبكةAS14618 · AWS EC2 (us-east-1)
Registration (base domain)goteal.io · تم إنشاؤه 28/06/2016
Elapsed Since First Report 26h
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف24/03/2026
DOM Analysisanalyzed 29/07/2026score 63/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://mailin.goteal.io/paga-ofertas/bancolombia/dinamicaMano.html
خوادم الأسماءpdns03.domaincontrol.compdns04.domaincontrol.com
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Amazon · valid for 299 days
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

11 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 15 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Seclookup
سوفوس
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of mailin.goteal.io · checked Mar 24, 2026

80
Needs Work
Performance
FCP
1.66s
First Contentful Paint
LCP
4.83s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
41ms
Total Blocking Time
SI
4.23s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/mailin.goteal.io"
  title="PhishDestroy threat report for mailin.goteal.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>