fidelityworkplaceef[.]click
“Log In to Fidelity NetBenefits”
Resumo das evidências
Analysis as of July 23, 2026 indicates that the domain fidelityworkplaceef.click was registered on February 21, 2026. The site presents the page title “Log In to Fidelity NetBenefits,” suggesting an attempt to impersonate Fidelity’s employee benefits portal. The infrastructure is hosted at IP address 43.162.112.221, which belongs to AS132203 and is geolocated in the United States at a Tencent building on Kejizhongyi Avenue. The SSL certificate is identified only as “E8,” providing minimal cryptographic assurance.
The domain has been referenced in four AlienVault OTX threat intelligence pulses and is listed on at least one external blocklist. PhishDestroy has already blocked the domain, and security vendors on VirusTotal flagged it in 14 of 93 scans. Independent reputation services assign extremely low trust scores: Gridinsoft rates the domain 0 out of 100, and Scamadviser scores it 1 out of 100. The current operational status is offline, indicating that the malicious site has been taken down or is no longer responding.
While the page title and scam type (“Banking Phishing”) are confirmed, the exact phishing kit, credential harvesting method, and any associated command‑and‑control infrastructure remain unverified because no additional forensic artifacts have been published. Defenders should treat any traffic to this address as hostile. Immediate actions include updating network firewalls and proxy filters to deny DNS resolution and HTTP/S connections to 43.162.112.221, adding the domain to existing URL filtering policies, and monitoring for any residual artifacts such as emails referencing “Fidelity NetBenefits.” Continuous threat‑intel feeds should be consulted for any resurgence of the domain or related aliases, and incidents involving credential submissions to Fidelity‑related services should be investigated for possible compromise.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Inteligência forense
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo