fldelltytextservlcc[.]world
“Log In to Fidelity NetBenefits”
Résumé des preuves
This domain is flagged for elevated risk due to targeted credential phishing, specifically impersonating the Fidelity NetBenefits login portal. The threat type involves a fraudulent authentication interface designed to harvest user credentials, likely targeting financial services customers or employees with access to retirement accounts and benefits platforms. Analysis indicates the domain fldelltytextservlcc.world was registered on February 21, 2026, and currently resolves to IP address 43.162.126.210, hosted on autonomous system AS132203 in a data center associated with Tencent infrastructure located in the United States. VirusTotal detection metrics show 17 out of 95 security vendors flagging this domain as malicious. The domain appears on two independent security blocklists and is actively blocked by multiple threat intelligence feeds. The SSL certificate, graded E8, suggests poor cryptographic practices or potential misuse. The page title, 'Log In to Fidelity NetBenefits,' directly correlates with the impersonated brand, reinforcing the credential harvesting intent. Mitigation requires immediate domain blocking at the network perimeter, including DNS filtering and firewall rules to prevent resolution of fldelltytextservlcc.world and its associated IP 43.162.126.210. Security teams should deploy indicators of compromise (IOCs) across endpoint detection and response (EDR) platforms, email gateways, and secure web gateways. User awareness training should emphasize verification of domain authenticity before entering credentials, particularly for financial or benefits portals. Organizations using Fidelity NetBenefits should enforce multi-factor authentication (MFA) and monitor for anomalous login attempts originating from this domain or related infrastructure. Logs from February 21, 2026 onward should be reviewed for connections to this domain or IP to identify potential prior exposure.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Analyse forensique
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif