fldeiityportfolloknowiedge[.]lat
“Log In to Fidelity NetBenefits”
fldeiityportfolloknowiedge.lat — 内容不可用. 品牌冒充:Fidelity; 诈骗类型:Banking Phishing. 证据摘要: VirusTotal 14/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 92/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain fldeiityportfolloknowiedge.lat was registered on February 21, 2026 and is currently taken offline. Active monitoring shows the site resolved to the IPv4 address 43.162.112.221, which is hosted in the United States and attributed to AS132203 (Tencent Building, Kejizhongyi Avenue). The SSL certificate presented an E8 rating, indicating a low‑trust cryptographic configuration. Reputation services assign the domain a Gridinsoft trust score of 0 out of 100, reflecting extreme malicious risk. The page title returned by the now‑inactive host was “Log In to Fidelity NetBenefits,” matching a banking‑phishing kit that targets Fidelity employees or customers.
AlienVault OTX has referenced the domain in 14 separate threat‑intel pulses, and VirusTotal recorded 14 of 93 scanning engines flagging the domain as malicious. The domain appears on one public security blocklist and is blocked by the PhishDestroy sinkhole. These indicators collectively classify the site as a banking phishing operation. Defenders should treat any traffic to fldeiityportfolloknowiedge.lat as hostile. Blocking the domain at the DNS or proxy level will prevent credential harvesting attempts.
The associated IP address 43.162.112.221 should be added to network‑level blacklists, and inbound connections from the AS132203 range merit additional scrutiny. Continuous monitoring of reputation feeds for re‑activation is advisable, as the offline status may change. At present, no further technical details such as server headers or content hashes have been disclosed, leaving the full extent of the phishing kit unknown. Organizations using Fidelity NetBenefits should warn users about the fraudulent login page and enforce multi‑factor authentication to mitigate credential compromise.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。