Online Threat Alerts (OTA) - Alerting you to scams and frauds.

fedexql Fraudulent and Scam Domain or URL
fedexql Fraudulent and Scam Domain or URL

The text "fedexql" is part of a fraudulent web domain or URL variant used in phishing and text message scams (smishing) impersonating FedEx. Scammers frequently register slightly altered addresses—appending letters like "ql" or using lookalike strings—to create realistic links that bypass automated spam filters.

How the Scam Works

  • The Phishing Message: You receive an unexpected text message or email claiming to be from FedEx regarding a package delivery. It usually states that a delivery was attempted, an address needs to be updated, or custom fees are owed.
  • The Malicious Link: The message contains a link pointing to a fake site (such as a fedexql domain) designed to mirror the Official FedEx Website.
  • The Trap: If you click the link, the fake portal prompts you to input credit card numbers, payment details for a "redelivery fee," or personal account credentials.

Red Flags to Watch For

  • Unsolicited Delivery Updates: Getting tracking notices or preferences links for a package you never ordered.
  • Altered Web Addresses: Legitimate tracking and communication happen on fedex.com. Any deviation (e.g., fedexql, fedx, fed-ex) is a definite indicator of fraud.
  • Urgency and Coercion: High-pressure phrasing demanding immediate payment or claiming your package will be discarded or returned.
  • Requests for Fees: Unsolicited texts demanding immediate payment for a domestic or standard delivery.

What to Do Next

  • Do Not Click the Link: If you have already received the message, delete it immediately and do not interact with the webpage.
  • Verify Directly: If you think you might actually have a package on the way, navigate to the official FedEx Tracking Portal manually through your browser and type in your tracking number.
  • Report the Phishing Attempt: Forward any fraudulent emails or screenshots of scam texts to abuse@fedex.com so their security teams can work on taking down the fake domain.
0

Comment sectionComments / Answers (0)

Remove sensitive information from your post. Your IP address will be used to display your estimated location.

Comment count 0


waiting