VirusTotal
13 / 89
“Aarke | Official Online Store | Aarke”
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | aarkedesign.shop |
malicious | Sinkholed |
An HTTP request to aarkedesign.shop on 2026-10-01 returned status 502, a dated observation of a gateway error rather than a served page. The domain was first observed on 2026-09-09, and a PhishDestroy internal listing was recorded for it.
VirusTotal reported 13 detections across 89 scanners on 2026-09-10, while OTX listed 4 pulses on the same date. The PhishDestroy internal listing was recorded, and the HTTP check on 2026-10-01 returned status 502. The SSL certificate was issued by Let's Encrypt / YE2 and scanned on 2026-09-09, and the PageSpeed performance score was 87 on 2026-09-09.
The PhishDestroy listing, OTX pulses and VirusTotal detections were collected on separate dates, so a reader should compare them as distinct dated observations rather than a single snapshot. The HTTP 502 from 2026-10-01 and the 2026-09-09 PageSpeed and SSL scans also fall on different dates, which limits direct comparison of those records.
Retain the dated records for aarkedesign.shop so later checks can be compared against the 2026-09-09 and 2026-10-01 observations. When reviewing aarkedesign.shop, avoid submitting passwords, payment details or other sensitive information, and compare each new observation with the retained evidence rather than relying on any single dated result.
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
Scanner note: transient_502: raw=transient_502; http=502; via=http_proxy
bradley.ns.cloudflare.comlana.ns.cloudflare.comLocation describes the IP network.
7a9d03d29b751c34b91507425c0f508f149a836363aac6ecb180ea81a80dcbfeSaved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
Google PageSpeed Insights — mobile performance audit of aarkedesign.shop · checked Sep 9, 2026
212.52.28.181. 16 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
PD-20260909-F8BA48 Recipient: abuse@rashost.com Policy Violations: Illegal Activities: Active phishing operation targeting victims Fraud & Deception: Impersonation of legitimate services Identity Theft: Collection of credentials under false pretenses Applicable Laws (Unknown): International Anti-Cybercrime Regulations Budapest Convention on Cybercrime Universal Fraud Prevention Laws Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws. Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Select your country to get official cybercrime contacts, or create a complaint draft →.
Template-based draft · optional AI wording assistance requires separate consent
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowSubmit suspicious domains to our threat database — protect the community
ReportRecent phishing reports and observed availability changes
MonitorMonitor live threats or contest this listing if you believe it's a false positive