flr-update[.]live
ملخص الأدلة
This domain flr-update.live was registered on May 01, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 172.67.180.125 in CA and uses nameservers lara.ns.cloudflare.com together with hassan.ns.cloudflare.com. The SSL certificate was obtained from Let's Encrypt under identifier E8. The domain carries an active status and is classified under credential phishing with a high risk level as of the July 12, 2026 report date. HTTP responses from the host return status code 403.
Detection data shows that 4 out of 95 security vendors flag the domain on VirusTotal. It appears in one AlienVault OTX threat intelligence pulse and is present on one security blocklist. The Gridinsoft trust score stands at 0 out of 100. These metrics indicate observable malicious association without reliance on any single source.
What remains uncertain includes the precise ownership behind the NICENIC registration and the exact payload or target brand involved in the credential theft operation. The 403 response prevents direct content inspection, leaving infrastructure details limited to the provided resolution and certificate data. No additional ASN or kit specifics are recorded in the available intelligence.
Defenders should incorporate the IP 172.67.180.125 and the listed nameservers into monitoring and filtering rules. Blocking or sinkholing traffic to flr-update.live based on the documented detections and blocklist presence reduces exposure. Continued tracking of the domain through existing threat feeds supports timely updates to protective measures.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | flr-update.live |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب