smtp2[.]goteal[.]io
“smtp2.goteal.io”
smtp2.goteal.io — لم يتم التحقق منها. انتحال العلامة التجارية: Bancolombia; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 80/100. مسجّل النطاق: GoDaddy.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of the domain smtp2.goteal.io indicates it was operational as a generic phishing infrastructure targeting email service credentials or SMTP-related fraud. Registered on June 28, 2016, through GoDaddy.com, LLC, the domain resolved to IP address 52.44.87.47, hosted on Amazon Web Services EC2 in the US-east-1 region. The SSL certificate was issued by Amazon, a common configuration for legitimate and malicious services alike, offering no definitive indication of intent. The page title, matching the domain name (smtp2.goteal.io), suggests an attempt to masquerade as a legitimate SMTP relay or email service, though no specific brand impersonation is confirmed from available data.
Sixteen of ninety-four security vendors on VirusTotal flagged the domain as malicious, a detection rate consistent with phishing or fraudulent activity. The domain appears on one security blocklist and was proactively blocked by PhishDestroy, further supporting its classification as a threat. Nameservers pdns03.domaincontrol.com and pdns04.domaincontrol.com are associated with GoDaddy’s DNS infrastructure, a frequent choice for both legitimate and malicious domains due to its accessibility and low cost. As of the report date, the domain is offline, limiting further real-time analysis.
No evidence links the domain to a specific phishing kit, targeted brand, or scam category beyond its generic SMTP-themed presentation. Defenders should treat this domain as a confirmed phishing indicator, particularly in contexts involving email credential theft or fraudulent SMTP services. Organizations are advised to block the domain and IP address 52.44.87.47 at the network level, monitor for related subdomains or newly registered lookalike domains, and review logs for prior connections to this infrastructure. Given the domain’s age and detection history, it may resurface under altered configurations or new hosting arrangements.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of smtp2.goteal.io · checked Mar 24, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب