fidelitysecurlty[.]cc
Перевірка домену fidelitysecurlty.cc на фішинг і безпеку
“Log In to Fidelity NetBenefits”
fidelitysecurlty.cc — Контент недоступний (HTTP 502). Уособлення бренду: Fidelity; Тип шахрайства: Banking Phishing. Зведення доказів: VirusTotal 15/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; Spamhaus DBL_PHISH; PhishDestroy score 95/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
fidelitysecurlty.cc was registered on 24 November 2025 through Gname.com Pte. Ltd. The site presented the page title “Log In to Fidelity NetBenefits” and was classified as a banking phishing campaign targeting Fidelity customers. Passive monitoring shows the domain has been taken offline at the time of this report (24 July 2026). The hosting resolves to IP 43.162.126.210, which is located in the United States and associated with ASN 132203, a Tencent‑owned network. The IP address appears in one security blocklist and is listed by PhishDestroy as blocked.
The domain is present on a single blocklist, and AlienVault OTX records the indicator in fourteen threat‑intelligence pulses, indicating moderate sharing among analysts. VirusTotal scans have returned detections from fifteen of ninety‑three AV engines, reinforcing the malicious classification. The SSL certificate is rated E8, and Gridinsoft assigns a trust score of zero out of one hundred, both indicating a lack of legitimate security posture. The limited visibility of the live site prevents verification of the exact page content, but the combination of the page title, phishing classification, blocklist presence, and multiple vendor detections provides sufficient evidence for defenders to treat the domain as malicious.
Recommended mitigation steps include adding fidelitysecurlty.cc and its resolving IP 43.162.126.210 to network deny lists, updating URL filtering policies, and monitoring for any re‑registration attempts. Analysts should also flag any future traffic to the Tencent ASN as potentially suspicious, given its historical use in this campaign. Continuous review of threat‑intel feeds for new pulses referencing the domain or associated IP is advised.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога