Not that it is unimportant, but the fact does it really needs to be in an AV, as there are so many browsers and other applications that have it incorporated already, not to mention if you use OpenDNS as your DNS server then that too can be incorporated.
So there are more than you can shake a stick at, the problem being AV A decides to add it to get a jump on AV B, C & D, etc. Now they feel they have to tick the boxes and include it too, when the first point of contact on a phishing site would be your DNS server and after that the next physical point of contact would be your browser. So there is a hell of a lot of redundancy.