Every month a client forwards us an email asking is this from you — a fake domain invoice, a suspended-hosting threat, click or your mailbox will be deleted. Here is how to spot them in 10 seconds.
The most common local scams
- Your domain is expiring — pay now — a fake invoice from an unknown registry, often with a foreign payment slip. Real notices come from your actual provider.
- Your mailbox will be deleted — a link to a fake login page that steals your password
- Hosting suspended, click here — panic plus a link, the classic
- Fake orders or invoices attached — a .zip or invoice.pdf.exe
The 4 checks before clicking
- 1. The sender address — not the display name, the full address: support@arka-host.xyz is NOT support@arkahost.mk
- 2. Where the link goes — hover (or long-press on a phone) WITHOUT clicking and read the real address
- 3. Urgency plus threat — within 24 hours is a scammer tool; real companies give you time
- 4. Attachments you did not ask for — do not open; ask first
The golden rule
Never log in via a link from an email. Open a new tab, type the address YOURSELF (or use a bookmark) and log in there. A legitimate notice will be waiting inside too.
If you are not sure
Forward us the email — we reply in minutes whether it is real. Better one silly question than a stolen password. And our real messages never ask for your password by email.