The domain bitget.arbitrum.im is currently flagged as an active generic phishing infrastructure. Infrastructure analysis shows the domain is delegated to the authoritative name servers a6.share-dns.com and b6.share-dns.net and resolves to the IPv4 address 27.124.44.188. The domain has been listed on one public security blocklist and was actively blocked by the PhishDestroy filtering service, indicating that at least one anti‑phishing vendor has observed malicious activity tied to this host.
VirusTotal records indicate that the domain was scanned by 91 antivirus engines, none of which raised a detection; this absence of detections does not constitute a safety assurance and should be treated as a neutral data point. No publicly available information on the SSL/TLS certificate, HTTP response codes, page title, or trust‑score metrics was found in the current intelligence set, leaving the exact content and visual presentation of the site unverified. Likewise, registrar details, ASN, and geographic attribution for the hosting IP are not disclosed, creating uncertainty around the ownership and potential abuse patterns.
Defenders should therefore treat the domain as malicious until further evidence suggests otherwise. Recommended mitigations include adding bitget.arbitrum.im to DNS‑level blocklists, configuring web‑gateway filters to deny traffic to the associated IP address, and monitoring network logs for any outbound connections to the domain or its name servers. Continuous re‑assessment is advised, with periodic re‑scans on platforms such as VirusTotal and checks against emerging blocklists to capture any changes in the domain’s behavior or hosting infrastructure.