MALICIOUS — CRITICAL
kardcas[.]com
Analysis of kardcas.com shows that the domain resolves to the Cloudflare‑owned address 172.67.195.121, located in the United States under ASN 13335.
- VirusTotal
- 3/93
- Blocklists
- No stored match
- sẵn có
- Chưa được xác minh
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
kardcas.com — Chưa được xác minh. Tóm tắt bằng chứng: VirusTotal 3/93 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 71/100. Nhà đăng ký: MAT BAO.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Evidence Analysis
Analysis of kardcas.com shows that the domain resolves to the Cloudflare‑owned address 172.67.195.121, located in the United States under ASN 13335. An HTTP request to the site returned a 403 response with the page title "Suspected phishing site | Cloudflare," indicating that the hosting provider has already flagged the content as malicious. The domain was registered on February 21, 2026 through MAT BAO CORPORATION and uses the Cloudflare nameservers donovan.ns.cloudflare.com and surina.ns.cloudflare.com. The TLS certificate presented is issued by Google Trust Services under the WE1 intermediate, confirming a valid HTTPS endpoint despite the malicious classification.
Reputation signals are strongly negative: Gridinsoft assigned a trust score of 0 out of 100, and the domain appears on one external security blocklist. PhishDestroy has recorded the site as taken offline, and three of ninety‑three VirusTotal scanners flagged it as malicious, reinforcing the suspicion of phishing activity. Cloudflare is the only technology detected, consistent with the hosting environment. No additional intelligence such as a specific brand target, phishing kit, or payload details has been publicly disclosed, leaving the exact content of the phishing page unverified.
Defenders should immediately add kardcas.com to DNS‑based blocklists and firewall deny lists, monitor the associated IP address for re‑use, and watch for any re‑registration attempts. Continuous surveillance of the Cloudflare nameservers and the registrar MAT BAO CORPORATION is advised, as threat actors may attempt to resurrect the domain or shift to sibling domains. Given the low trust score, blocklist presence, and vendor detections, the domain should be treated as high‑confidence malicious and excluded from user access.
Phạm vi dữ liệu12 recorded checks
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Bản chụp đã lưu
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, SAN trong SSL, dấu thời gian
ICANN OVERSIGHT
Bối cảnh công nhận và RAA
Bối cảnh công nhận và RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Công nghệ · 1 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Độ tin cậy 100%Phân tích của VirusTotal
Bằng chứng và các báo cáo bên ngoàiIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.