Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@globaldomaingroup.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
manual[.]717team[.]cc
“Invoice методы работы | 717 Team Docs”
manual.717team.cc — Скрытый · достижимый. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, Webroot); cloaking observed; PhishDestroy score 65/100. Регистратор: Global Domain Group.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain manual.717team.cc is a generic phishing site posing as an invoice-related document portal, specifically targeting victims with a fraudulent 'Invoice методы работы | 717 Team Docs' page. This site does not impersonate a known brand but operates as an invoice scam, tricking users into submitting sensitive information or making unauthorized payments. As of the latest verification, manual.717team.cc has been taken offline, though it previously exhibited elevated risk indicators.
Technical analysis of manual.717team.cc reveals 3 of 95 VirusTotal security vendors flagged the domain, while Google Safe Browsing did not detect it. The domain appears on 1 security blocklist (PhishDestroy) and was registered through Global Domain Group LLC on February 21, 2026. It resolved to the IP address 104.21.55.142, hosted on Cloudflare's infrastructure (AS13335) in the US. The SSL certificate was issued by Google Trust Services (WE1), and the site employed technologies including GitBook, Google Cloud, Vercel, and Cloudflare. Nameservers were aiden.ns.cloudflare.com and zelda.ns.cloudflare.com, and the Gridinsoft trust score was 0/100.
Users who interacted with manual.717team.cc should immediately change any credentials entered on the site and enable two-factor authentication (2FA) on affected accounts. Monitor financial statements for unauthorized transactions and report suspected fraud to relevant institutions. To report the phishing domain, submit it to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities. If payment details were shared, contact the bank or payment provider to dispute fraudulent charges.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 6 identified
Suite of cloud computing services running on Google infrastructure.
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of manual.717team.cc · checked Mar 6, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
PD-20260128-862B22 Recipient: abuse@globaldomaingroup.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание