THUGS(red) DarkWeb/Monitor_

Shadowcarders

Blocked Dark Web Market

Open

capture
Blocked: a challenge page was served instead of the siteCHALLENGE PAGE

The only capture we hold is a challenge page, not the service. It is kept for evidence but is not shown here as if it were the site. View the raw capture.

what the page says

Just a moment...

Shadowcarders is best carding forum of 2018 we have russian carding forum , chinese carding forum , arabic carding forum , it is alternative of altenen.com. carder forum give you free cvv, fullz, dumps, tracks, accounts

shadowcarders.com Performing security verification This website uses a security service to protect against malicious bots. This page is displayed while the website verifies you are not a bot. Ray ID: a2e966f36c1331a2 Performance and Security by Cloudflare Privacy
reachability history
The 5 most recent checks.
When Status HTTP Response Bytes Via
9m ago Responding-403 403 106 ms 5,450 curl
1h ago Responding-403 403 97 ms 5,450 curl
2h ago Responding-403 403 102 ms 5,450 curl
4h ago Responding-403 403 96 ms 5,450 curl
6h ago Responding-403 403 20 ms 5,963 chrome-stealth
security headers
Csp
Raw
default-src 'none'; script-src 'nonce-LOS2wSFxRct6lNsDOGkQ25' 'unsafe-eval' https://challenges.cloudflare.com; script-src-attr 'none'; style-src 'unsafe-inline'; img-src 'self' https://challenges.cloudflare.com; connect-src 'self' https://challenges.cloudflare.com; frame-src 'self' https://challenges.cloudflare.com blob:; child-src 'self' https://challenges.cloudflare.com blob:; worker-src blob:; form-action http: https:; base-uri 'self'
Directives
Default src
'none'
Script src
'nonce-LOS2wSFxRct6lNsDOGkQ25''unsafe-eval'https://challenges.cloudflare.com
Script src attr
'none'
Style src
'unsafe-inline'
Img src
'self'https://challenges.cloudflare.com
Connect src
'self'https://challenges.cloudflare.com
Frame src
'self'https://challenges.cloudflare.comblob:
Child src
'self'https://challenges.cloudflare.comblob:
Worker src
blob:
Form action
http:https:
Base uri
'self'
Unsafe inline
yes
Unsafe eval
yes
X frame options
SAMEORIGIN
X content type options
nosniff
Referrer policy
same-origin
Permissions policy
Accelerometer
()
Camera
()
Clipboard read
()
Clipboard write
()
Geolocation
()
Gyroscope
()
Hid
()
Magnetometer
()
Microphone
()
Payment
()
Publickey credentials get
()
Screen wake lock
()
Serial
()
Sync xhr
()
Usb
()
Xr spatial tracking
*
Cross origin
Opener
same-origin
Embedder
require-corp
Resource
same-origin
Cookies
Count
0
Secure
0
Httponly
0
Samesite
0
Score
66
Missing
hsts
tls certificate
Protocol
TLS 1.3
Cipher
AES_128_GCM
Key exchange group
X25519MLKEM768
Signature algorithm
1027
Subject
shadowcarders.com
Issuer
WE1
San
shadowcarders.com*.shadowcarders.com
San count
2
Wildcard
yes
Valid from
2026-07-04 08:39:15
Valid to
2026-10-02 09:37:47
Days remaining
41
Self signed
no
Ct compliance
unknown
Ech
no
technology detected
Server
Raw
cloudflare
Name
cloudflare
Family
cloudflare
Frameworks
  • Name
    AngularJS
Js
  • Name
    Turnstile
Cdn
Cloudflare
Protocol
h2
what blocks us
Detected
yes
Kind
cloudflare-interstitial
Vendor
Cloudflare
Label
Cloudflare JS challenge
Confidence
100
Signals
cf-mitigated: challengeserved through CloudflareCloudflare challenge-platform scriptcf_chl_opt bootstrap objectchallenge-platform asset path_cf_chl_opt bootstraptitle contains "just a moment"document body is almost empty (265 chars)HTTP 403
Self clearing
yes
Cleared
no
Waited ms
25222
Http code
403
Via
chrome-stealth
contacts published
  • Total0
crypto addresses
  • Total0
forms on the page
Count
0
Has login
no
Has search
no
Has upload
no
outbound onion links
  • onion_unique not tracked onion_unique
  • onion_total not tracked onion_total
  • clearnet_unique not tracked clearnet_unique 1
  • internal not tracked internal
  • external not tracked external 2
  • total not tracked total 2
  • truncated not tracked truncated
response headers
HeaderValue
accept-ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
alt-svc h3=":443"; ma=86400
cf-mitigated challenge
cf-ray a2e966f36c1331a2-CPH
content-encoding zstd
content-security-policy default-src 'none'; script-src 'nonce-LOS2wSFxRct6lNsDOGkQ25' 'unsafe-eval' https://challenges.cloudflare.com; script-src-attr 'none'; style-src 'unsafe-inline'; img-src 'self' https://challenges.cloudflare.com; connect-src 'self' https://challenges.cloudflare.com; frame-src 'self' https://challenges.cloudflare.com blob:; child-src 'self' https://challenges.cloudflare.com blob:; worker-src blob:; form-action http: https:; base-uri 'self'
content-type text/html; charset=UTF-8
critical-ch Sec-CH-UA-Bitness, Sec-CH-UA-Arch, Sec-CH-UA-Full-Version, Sec-CH-UA-Mobile, Sec-CH-UA-Model, Sec-CH-UA-Platform-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Platform, Sec-CH-UA, UA-Bitness, UA-Arch, UA-Full-Version, UA-Mobile, UA-Model, UA-Platform-Version, UA-Platform, UA
cross-origin-embedder-policy require-corp
cross-origin-opener-policy same-origin
cross-origin-resource-policy same-origin
date Fri, 21 Aug 2026 11:47:17 GMT
nel {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
origin-agent-cluster ?1
permissions-policy accelerometer=(),camera=(),clipboard-read=(),clipboard-write=(),geolocation=(),gyroscope=(),hid=(),magnetometer=(),microphone=(),payment=(),publickey-credentials-get=(),screen-wake-lock=(),serial=(),sync-xhr=(),usb=(),xr-spatial-tracking=*
referrer-policy same-origin
report-to {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Q8WM67GBNeGm3yhn82jSRPiXT%2BgAunV9NkaqlgVPUPo7coLp06yXg%2BI%2F8H%2Ff3v3ft1FCXaNFajHL2gIAC5nHAWaMujLgWYvmMNwjV7707UFTuPEo6aJ1eJNBbc1AYWmZ%2FZWX8A%3D%3D"}]}
server cloudflare
server-timing chlray;desc="a2e966f36c1331a2"
x-content-type-options nosniff
x-frame-options SAMEORIGIN