fletch[.]finance
“Fletch · Trade the dividend. Keep the stock.”
Evidence Summary
On August 04, 2026, investigators recorded the domain fletch.finance as an active generic phishing infrastructure under the unique seed 0826a2. The domain has been scanned by VirusTotal, where 91 commercial and open‑source scanning engines have processed the site without generating a detection. While the absence of a flag does not constitute a safety guarantee, it indicates that, as of the latest scan, no known signature or heuristic triggered an alert.
The domain appears on a single external security blocklist and is explicitly blocked by the PhishDestroy service, suggesting that at least one independent threat‑intelligence feed has identified malicious activity associated with the host. No additional data points such as registrar details, IP address, Autonomous System Number, geographic hosting, SSL certificate information, HTTP response codes, or Safe Browsing verdicts are presently available, leaving the broader infrastructure characteristics unverified. Consequently, the confidence in attributing the domain to a specific phishing kit, campaign, or targeted brand remains limited.
Defenders should treat fletch.finance as a potentially hostile resource and consider immediate preventative actions: add the domain to network‑level deny lists, enforce DNS‑level blockages, and monitor outbound traffic for connections to the host. Continuous re‑evaluation is advised, including periodic rescanning with VirusTotal or similar multi‑engine services, and correlation of any future detections with internal security logs to refine the risk posture as more evidence emerges.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
2 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of fletch.finance · checked Aug 4, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive