fldelltytextservlcc[.]world
“Log In to Fidelity NetBenefits”
Сводка доказательств
This domain is flagged for elevated risk due to targeted credential phishing, specifically impersonating the Fidelity NetBenefits login portal. The threat type involves a fraudulent authentication interface designed to harvest user credentials, likely targeting financial services customers or employees with access to retirement accounts and benefits platforms. Analysis indicates the domain fldelltytextservlcc.world was registered on February 21, 2026, and currently resolves to IP address 43.162.126.210, hosted on autonomous system AS132203 in a data center associated with Tencent infrastructure located in the United States. VirusTotal detection metrics show 17 out of 95 security vendors flagging this domain as malicious. The domain appears on two independent security blocklists and is actively blocked by multiple threat intelligence feeds. The SSL certificate, graded E8, suggests poor cryptographic practices or potential misuse. The page title, 'Log In to Fidelity NetBenefits,' directly correlates with the impersonated brand, reinforcing the credential harvesting intent. Mitigation requires immediate domain blocking at the network perimeter, including DNS filtering and firewall rules to prevent resolution of fldelltytextservlcc.world and its associated IP 43.162.126.210. Security teams should deploy indicators of compromise (IOCs) across endpoint detection and response (EDR) platforms, email gateways, and secure web gateways. User awareness training should emphasize verification of domain authenticity before entering credentials, particularly for financial or benefits portals. Organizations using Fidelity NetBenefits should enforce multi-factor authentication (MFA) and monitor for anomalous login attempts originating from this domain or related infrastructure. Logs from February 21, 2026 onward should be reviewed for connections to this domain or IP to identify potential prior exposure.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание