gov-firelightfinance[.]live
gov-firelightfinance.live — Não verificado. Representação da marca: MetaMask; Tipo de golpe: Impersonation. Resumo das evidências: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CRDF, ESET, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 77/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of the domain gov-firelightfinance.live indicates active malicious activity classified as generic phishing. The domain was created on June 07, 2026, and first appeared in the current intelligence set on July 29, 2026. VirusTotal records show that nine of ninety‑one scanning engines have flagged the host, providing a measurable level of consensus among security products.
Independent blocklist operators PhishDestroy, MetaMask and SEAL have each added the domain to their deny lists, and the host is also listed on three additional public blocklists, confirming its presence on multiple threat‑sharing platforms. The elevated risk rating is derived from the recent registration date, the multi‑vendor detection count, and the confirmed blocklist listings, all of which suggest a purposeful campaign rather than an isolated misconfiguration. No data on the underlying hosting infrastructure, SSL certificate details, HTTP response codes, page title, or observed landing page content is available in the supplied feed, leaving the exact phishing lure and target brand undefined.
Consequently, defenders should treat the domain as hostile: block any DNS resolution or network traffic to gov-firelightfinance.live at perimeter firewalls, proxy filters, and endpoint security solutions; add the host to email filtering deny lists; and enable logging of any attempted connections for forensic correlation. Threat‑hunting teams are advised to search for credential‑submission events, credential‑stealing payloads, or user‑agent strings that reference the domain. Continuous monitoring is recommended, as additional telemetry such as sandbox analysis, URL snapshots, or WHOIS updates could refine the threat profile and inform response actions.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo