fldeiltyportfolioknowledge[.]lat
“Log In to Fidelity NetBenefits”
fldeiltyportfolioknowledge.lat — Konten tidak tersedia. Peniruan identitas merek: Fidelity; Jenis penipuan: Banking Phishing. Ringkasan bukti: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 92/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
On 23 July 2026 analysts observed the domain fldeiltyportfolioknowledge.lat. The domain was registered on 21 February 2026 and currently resolves to the IPv4 address 43.162.112.221, which is assigned to an AS132203 network operated from a Tencent building on Kejizhongyi Avenue in the United States. The site presents the page title “Log In to Fidelity NetBenefits”, indicating an attempt to impersonate Fidelity’s NetBenefits portal. The SSL certificate presented is identified by the label “E8”, a characteristic previously associated with malicious hosting infrastructure.
The domain appears in fourteen AlienVault OTX pulses, demonstrating repeated use in threat‑intel feeds. It is listed on a single security blocklist and has been actively blocked by the PhishDestroy service. VirusTotal analysis shows fourteen of ninety‑three scanning engines flag the domain as malicious, reinforcing the suspicion of a phishing operation. The overall risk rating is elevated and the domain’s status is recorded as offline, suggesting that the hosting has been taken down or otherwise rendered inaccessible.
Evidence confirms that the domain is being used for banking‑phishing activity targeting Fidelity customers, but no additional payload or credential‑harvesting infrastructure has been publicly disclosed. The limited number of blocklist entries and the modest detection count imply that the campaign may be in an early stage or employing a low‑profile hosting strategy. Defenders should add the domain and its resolved IP address to deny‑list rules, monitor DNS queries for similar newly‑registered .lat domains, and continue to track OTX pulse updates for any emerging indicators. Ongoing verification of the SSL certificate fingerprint and periodic rescans on VirusTotal are advised to capture any changes in detection status.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive