الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 10. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

smtp2[.]goteal[.]io

“smtp2.goteal.io”

حكم التهديد حرجة 80/100 درجة الأدلة
التوفر لم يتم التحقق منها لم يتم التحقق من إمكانية الوصول الحالية
اكتشافات VirusTotal: 10/91 انتحال العلامة التجارية: Bancolombia
24/03/2026 Bancolombia
ملخص التقرير

smtp2.goteal.io — لم يتم التحقق منها. انتحال العلامة التجارية: Bancolombia; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 10/91 (alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 80/100. مسجّل النطاق: GoDaddy.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
664F1216
الدرجة
80/100

Analysis of the domain smtp2.goteal.io indicates it was operational as a generic phishing infrastructure targeting email service credentials or SMTP-related fraud. Registered on June 28, 2016, through GoDaddy.com, LLC, the domain resolved to IP address 52.44.87.47, hosted on Amazon Web Services EC2 in the US-east-1 region. The SSL certificate was issued by Amazon, a common configuration for legitimate and malicious services alike, offering no definitive indication of intent. The page title, matching the domain name (smtp2.goteal.io), suggests an attempt to masquerade as a legitimate SMTP relay or email service, though no specific brand impersonation is confirmed from available data.

Sixteen of ninety-four security vendors on VirusTotal flagged the domain as malicious, a detection rate consistent with phishing or fraudulent activity. The domain appears on one security blocklist and was proactively blocked by PhishDestroy, further supporting its classification as a threat. Nameservers pdns03.domaincontrol.com and pdns04.domaincontrol.com are associated with GoDaddy’s DNS infrastructure, a frequent choice for both legitimate and malicious domains due to its accessibility and low cost. As of the report date, the domain is offline, limiting further real-time analysis.

No evidence links the domain to a specific phishing kit, targeted brand, or scam category beyond its generic SMTP-themed presentation. Defenders should treat this domain as a confirmed phishing indicator, particularly in contexts involving email credential theft or fraudulent SMTP services. Organizations are advised to block the domain and IP address 52.44.87.47 at the network level, monitor for related subdomains or newly registered lookalike domains, and review logs for prior connections to this infrastructure. Given the domain’s age and detection history, it may resurface under altered configurations or new hosting arrangements.

VirusTotal
VirusTotal
10 det.
DNS Security
5/14
رادار CF
ضار
شهادة TLS
منتهية الصلاحية أو غير متحقق منها
العمر
10.1 yr
الحالة المرصودة
لم يتم التحقق منها
PhishDestroy
قائمة الإتلاف
مُدرج
نطاق تغطية البيانات VirusTotal 10 / 91 URLQuery لم يتم التحقق منها PhishStats checked — no match recorded OTX no community references رادار CF provider verdict: malicious URLScan capture التقرير المخزن URLScan verdict malicious حجب عناوين DNS 5/14 TLS منتهية الصلاحية أو غير متحقق منها WHOIS 123 mo old لقطة شاشة 2 captures · 2 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
DNS Provider Blocks 5 / 14
Cloudflare Family Cloudflare Security Controld Adblock Controld Family Controld Malware
CF Cloudflare Radar Verdict ضار
Phishing
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: Amazon

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
13/15

حالة قوائم الحظر العامة

لقطة محفوظة

معلومات النطاق

النطاق
URLScan Verdict ضار score 100 Phishing brand: Bancolombia report ↗
الخادم / ASN Apache/2.4.52 (Ubuntu) · AS14618 Amazon.com, Inc.
سمعة عنوان IP abuse score 0/100 0 reports checked 13/08/2026
Registrar (base domain) GoDaddy US(US)
عنوان IP 52.44.87.47 US
الموقع الجغرافيUS Ashburn, US
الشبكةAS14618 · AWS EC2 (us-east-1)
Registration (base domain)goteal.io · تم إنشاؤه 28/06/2016
Elapsed Since First Report 26h
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: لم يتم التحقق منها.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف24/03/2026
DOM Analysisanalyzed 29/07/2026score 63/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://smtp2.goteal.io/paga-ofertas/bancolombia/contrase%C3%B1aEmpresas.html
خوادم الأسماءpdns03.domaincontrol.compdns04.domaincontrol.com
عنوان الصفحة
smtp2.goteal.io
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن Amazon · valid for 299 days
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

10 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed Previous stored snapshot: 16 detections
alphaMountain.ai
BitDefender
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
سوفوس
VIPRE
Webroot
تحليل أداء الموقع

Google PageSpeed Insights — mobile performance audit of smtp2.goteal.io · checked Mar 24, 2026

76
Needs Work
Performance
FCP
1.98s
First Contentful Paint
LCP
5s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
64ms
Total Blocking Time
SI
5.48s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

الأدلة والتقارير الخارجية

نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/smtp2.goteal.io"
  title="PhishDestroy threat report for smtp2.goteal.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>