fldeiltyportfolioknowledge[.]lat
“Log In to Fidelity NetBenefits”
fldeiltyportfolioknowledge.lat — İçerik kullanılamıyor. Marka kimliğine bürünme: Fidelity; Dolandırıcılık türü: Banking Phishing. Kanıt özeti: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 92/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
On 23 July 2026 analysts observed the domain fldeiltyportfolioknowledge.lat. The domain was registered on 21 February 2026 and currently resolves to the IPv4 address 43.162.112.221, which is assigned to an AS132203 network operated from a Tencent building on Kejizhongyi Avenue in the United States. The site presents the page title “Log In to Fidelity NetBenefits”, indicating an attempt to impersonate Fidelity’s NetBenefits portal. The SSL certificate presented is identified by the label “E8”, a characteristic previously associated with malicious hosting infrastructure.
The domain appears in fourteen AlienVault OTX pulses, demonstrating repeated use in threat‑intel feeds. It is listed on a single security blocklist and has been actively blocked by the PhishDestroy service. VirusTotal analysis shows fourteen of ninety‑three scanning engines flag the domain as malicious, reinforcing the suspicion of a phishing operation. The overall risk rating is elevated and the domain’s status is recorded as offline, suggesting that the hosting has been taken down or otherwise rendered inaccessible.
Evidence confirms that the domain is being used for banking‑phishing activity targeting Fidelity customers, but no additional payload or credential‑harvesting infrastructure has been publicly disclosed. The limited number of blocklist entries and the modest detection count imply that the campaign may be in an early stage or employing a low‑profile hosting strategy. Defenders should add the domain and its resolved IP address to deny‑list rules, monitor DNS queries for similar newly‑registered .lat domains, and continue to track OTX pulse updates for any emerging indicators. Ongoing verification of the SSL certificate fingerprint and periodic rescans on VirusTotal are advised to capture any changes in detection status.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin