fidelityworkplaceie[.]click
“Log In to Fidelity NetBenefits”
Kanıt özeti
The domain fidelityworkplaceie.click was registered on February 21, 2026 and is presently taken offline. DNS resolution points to the IPv4 address 43.162.112.221, which is assigned to ASN 132203 and hosted in the United States at the Tencent Building on Kejizhongyi Avenue. An SSL certificate associated with the host is identified by the label E8, indicating a low‑trust certificate. The only page title observed during the brief live period was "Log In to Fidelity NetBenefits," suggesting an attempt to masquerade as the official Fidelity NetBenefits portal and confirming the classification as a Banking Phishing campaign.
AlienVault OTX references the domain in fourteen separate threat‑intel pulses, demonstrating that multiple analysts have flagged it as malicious. VirusTotal analysis reports that twelve of ninety‑three security vendors marked the domain as harmful, providing a moderate detection consensus. The domain appears on a single public blocklist and is explicitly blocked by the PhishDestroy feed, confirming that at least one commercial mitigation service has incorporated the indicator.
Current evidence does not reveal additional infrastructure such as command‑and‑control servers, payload delivery mechanisms, or related secondary domains, and no sample of the hosted content has been publicly released. Defenders should continue to deny resolution to the host IP, enforce URL filtering for the full domain, and monitor for any re‑registration or resurrection of the domain or its IP address. Adding the domain and IP to internal blocklists, as well as sharing the indicator with upstream threat‑sharing platforms, will help prevent further victim exposure while the site remains offline.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | fidelityworkplaceie.click |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin