fideltyportfolloknowiedge[.]lat
“Log In to Fidelity NetBenefits”
fideltyportfolloknowiedge.lat — Контент недоступен. Олицетворение бренда: Fidelity; Тип мошенничества: Banking Phishing. Сводка доказательств: VirusTotal 15/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 100 det.; URLScan malicious verdict; PhishDestroy score 100/100. Регистратор: Gname.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain fideltyportfolloknowiedge.lat poses a specific brand impersonation threat targeting Fidelity customers. Its page title, "Log In to Fidelity NetBenefits," is designed to trick users into entering their login credentials on a fraudulent site. This typo-squatted domain exploits a common misspelling of "Fidelity Portfolio Knowledge" to appear legitimate, aiming to harvest sensitive financial information.
Evidence of malicious activity is substantial. VirusTotal reports that 15 out of 95 security vendors flag this domain as malicious. It was created on November 29, 2025, through registrar Gname.com Pte. Ltd., a registrar often associated with phishing campaigns. The domain appears on 2 security blocklists and has been found in 16 threat intelligence pulses on AlienVault OTX. It resolves to IP address 43.162.112.221, which has no associated SSL certificate, further indicating its illegitimate nature. The domain is currently offline, having been taken down.
Users who visited this domain should immediately change their Fidelity account passwords and enable two-factor authentication. They should also monitor their accounts for unauthorized activity and consider placing a fraud alert with credit bureaus. PhishDestroy recommends that all users verify URLs carefully and avoid clicking on links in unsolicited messages. If credentials were entered, contact Fidelity support directly through official channels.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание