fldeiltytextservicea[.]world
“Log In to Fidelity NetBenefits”
Сводка доказательств
PhishDestroy has identified fldeiltytextservicea.world as an elevated-risk phishing domain that specifically impersonates Fidelity, a well-known financial services brand. The domain was designed to trick users into believing they are logging into the legitimate Fidelity NetBenefits portal, as evidenced by its page title, 'Log In to Fidelity NetBenefits'. This type of brand impersonation attack is highly dangerous because it preys on user trust and can lead to the theft of sensitive financial credentials.
The domain was registered on November 28, 2025, through Gname.com Pte. Ltd., and resolves to the IP address 43.162.112.221. It does not have an SSL certificate, which is a major red flag for any site handling login credentials. VirusTotal flagged the domain with 19 out of 95 security vendors marking it as malicious, and it appears on two security blocklists. Additionally, AlienVault OTX recorded its presence in 16 threat intelligence pulses, indicating widespread recognition of its malicious nature. Despite being taken offline, the domain's brief activity was sufficient to pose a significant risk to users.
Users who may have encountered this domain should immediately change their Fidelity NetBenefits password and enable two-factor authentication if available. It is also advisable to monitor financial accounts for any unauthorized activity and report any suspicious transactions to Fidelity. PhishDestroy recommends avoiding clicking on links in unsolicited emails or messages, and always verifying the URL before entering login credentials. For any concerns, users should contact Fidelity directly through official channels.
Data Coverage
Сигналы безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание