jxsrkokfidelity[.]shop
“Log In to Fidelity NetBenefits”
jxsrkokfidelity.shop — المحتوى غير متوفر. انتحال العلامة التجارية: Fidelity; نوع الاحتيال: Banking Phishing. ملخص الأدلة: VirusTotal 14/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 92/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, jxsrkokfidelity.shop, presents an elevated-risk phishing threat designed to harvest financial credentials by mimicking the Fidelity NetBenefits login portal. The page title, 'Log In to Fidelity NetBenefits,' directly replicates the legitimate service, increasing the likelihood of user deception. Analysis indicates the site was engineered to capture sensitive authentication details, including usernames, passwords, and potentially multi-factor authentication codes, which could facilitate unauthorized access to retirement accounts, brokerage services, or other financial assets managed through Fidelity platforms. Infrastructure analysis reveals multiple technical indicators of malicious intent. The domain was registered on February 21, 2026, through an undisclosed registrar, suggesting an attempt to evade immediate detection by leveraging a future-dated creation timestamp. At the time of assessment, the domain resolved to IP address 43.162.126.210, hosted within AS132203, an autonomous system associated with infrastructure frequently exploited for phishing operations. Detection metrics further substantiate the threat: 14 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appeared on one additional security blocklist. The SSL certificate, identified as E7, does not align with Fidelity’s established cryptographic standards, providing another discrepancy for vigilant users to identify. Users who may have interacted with jxsrkokfidelity.shop should take immediate remedial actions to mitigate potential compromise. First, any credentials entered on the site should be considered exposed and must be changed without delay, beginning with the legitimate Fidelity platform and extending to any other services where identical or similar login details may have been reused. Multi-factor authentication should be enabled or reviewed for tampering. Affected individuals are advised to monitor financial accounts for unauthorized transactions and report suspicious activity to their financial institution. System scans using updated security tools are recommended to detect any secondary payloads or persistent threats that may have been introduced during the interaction. Finally, users should verify the authenticity of any communications purporting to be from Fidelity by cross-referencing with official contact channels.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب