MALICIOUS — HIGH
kaarden[.]org
Analysis of kaarden.org indicates the site is actively delivering a fake airdrop campaign.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- 가용성
- 마지막으로 알려진 활성 · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
kaarden.org — 마지막으로 알려진 활성 (HTTP 200). 사기 유형: Fake Airdrop. 증거 요약: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 69/100. 등록기관: Cloudflare.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Evidence Analysis
kaarden.org: Confirmed Fake Airdrop Scam
Analysis of kaarden.org indicates the site is actively delivering a fake airdrop campaign.
Analysis of kaarden.org indicates the site is actively delivering a fake airdrop campaign. The domain was registered on 15 May 2026 through Cloudflare and resolves to 188.114.96.3, an IP owned by Cloudflare, Inc. in Canada. The authoritative nameservers are aitana.ns.cloudflare.com and norman.ns.cloudflare.com. TLS is provided by a Let’s Encrypt certificate (CN=E8), and the web server returns HTTP 200 for the landing page titled "Kaarden Official Presale with up to 200% bonus". Intelligence feeds list the site under a single AlienVault OTX pulse and it is currently listed on one public blocklist and blocked by PhishDestroy. Gridinsoft assigns a trust score of 0/100, reflecting a high likelihood of malicious intent. The observed attributes align with a "Fake Airdrop" scam, where victims are enticed with exaggerated token bonuses. No public malware detections have been reported, but the absence of detections does not confirm safety. Defenders should add kaarden.org to URL filtering and sinkhole lists, monitor DNS queries for the Cloudflare nameservers, and enforce outbound traffic controls to prevent credential or wallet address exfiltration. Continuous re‑assessment is advised as the site remains active.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
데이터 적용 범위12 recorded checks
위협 대응 Pipeline
공개 차단 목록 상태
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서Independent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.