Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
editable-templates[.]cc
“PSD Templates | Passport, Driver License, ID, Utility bill”
On 24 July 2026, analysis of the domain editable-templates.cc indicates it is currently offline but exhibits indicators consistent with a generic phishing operation. The domain was registered on 21 February 2026 through NiceNIC International Group Co., Limited. Trust scores from Scamadviser (1/100) and Gridinsoft (0/100) reflect a high likelihood of malicious intent. The site resolved to IP 172.66.40.215, which belongs to AS13335 operated by Cloudflare, Inc., placing the host in the United States. The SSL certificate was issued by Google Trust Services under the WE1 root, confirming the use of a valid TLS chain despite the malicious profile.
HTTP probing returned a 200 status code and the page title “PSD Templates | Passport, Driver License, ID, Utility bill”, suggesting the site offered downloadable templates that could be used to fabricate identification documents. The underlying stack identified WordPress, MySQL, PHP, NitroPack and HTTP/3, all typical of compromised or malicious sites hosted behind Cloudflare. Nameservers jamie.ns.cloudflare.com and roan.ns.cloudflare.com confirm the reliance on Cloudflare DNS. VirusTotal scanned the domain and recorded a single detection out of 93 security vendors, indicating at least one vendor flagged the domain as malicious. The domain appears on the PhishDestroy blocklist and is listed on one additional security blocklist, reinforcing its classification as a phishing resource.
Defenders should block traffic to 172.66.40.215 at the network perimeter and add editable-templates.cc to URL filtering and endpoint allow-list exclusion policies. Given the low trust scores and the presence on phishing blocklists, automated sandbox analysis of any payloads associated with the site is recommended. Continuous monitoring of the IP address and related Cloudflare nameservers is advised, as the infrastructure could be repurposed for future campaigns.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260214-CF7F70- Заголовок сохранённой страницы
- PSD Templates | Passport, Driver License, ID, Utility bill
- PDF-файл
- PDF с доказательствами
Полный текст доказательств
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Сигналы безопасности
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
Хронология обнаружения
-
Доступность
stage4.timeline.first_value
993d00c35140 -
Доступность
stage4.timeline.transition
bcc8ff21675e -
Доступность
stage4.timeline.transition
200c32950018 -
Доступность
stage4.timeline.transition
def9941dffeb -
Доступность
stage4.timeline.transition
7cebcfd4071c -
Доступность
stage4.timeline.transition
acadea01ed72 -
Доступность
stage4.timeline.transition
ca255b61650a -
Доступность
stage4.timeline.transition
a5235a0eb3bb -
Доступность
stage4.timeline.transition
d8f7d37d7f95 -
Доступность
stage4.timeline.transition
22b339e94ff2
Технологии
Выявлено 6 технологий с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of editable-templates.cc · checked Mar 2, 2026
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание