guardan[.]io
“Your NodeJS Droplet”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
The domain guardan.io was registered on February 21, 2026 through Name.com, Inc. and resolves to the Cloudflare‑owned address 172.67.131.96 (AS13335, United States). The authoritative name servers listed are ns3dgr.name.com, ns1fkl.name.com, ns4blx.name.com, and ns2btz.name.com. The site is protected by Cloudflare and serves HTTP/3 traffic, but it does not present an SSL/TLS certificate, and an HTTP request returns a 404 status code. The page title returned by the server is "Your NodeJS Droplet," which provides no indication of a specific target brand or service.
The domain is currently marked as offline, yet it continues to appear on at least one security blocklist and is actively blocked by the PhishDestroy service. Threat intelligence aggregators have recorded the domain in fifteen AlienVault OTX pulses, and VirusTotal analysis shows that sixteen of ninety‑three security vendors flagged the domain as malicious. No further technical details about the page content or payload have been disclosed.
Defenders should treat guardan.io as a confirmed malicious infrastructure element. Recommendations include adding the domain to URL filtering and DNS deny lists, monitoring for any re‑activation or new sub‑domains that resolve to the same Cloudflare IP range, and correlating internal logs for any HTTP requests to the domain before it went offline. Continuous observation of OTX and VirusTotal updates is advised to capture any evolving indicators of compromise associated with this host.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | guardan.io |
malicious | Sinkholed |
| Hagezi Threat Feed | guardan.io |
malicious | Sinkholed |
| DNS0 Zero | guardan.io |
malicious | Sinkholed |
| DNS4EU | guardan.io |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 25/08/2025
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
معلومات المجتمع
بلاغ مجتمعي واحد
الفئةPHISHING
Detection Summary The Anti-Phishing Volunteers & Associates Security Incident Response System has flagged this as a domain threat, classified as phishing attack against several brands. Threat detected at 2025-09-24T15:14:34.875Z. Targeted Brands Guarda Wallet Ledger
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of guardan.io · checked Mar 2, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب