applevalleyca.gov - malicious URL scan, 21 Aug 2026
MalwareAnalyzer by Cyble scanned applevalleyca.gov and returned a malicious verdict (score 100), categorised as phishing. The page resolved to 45.63.49.195 on Vultr Holdings, LLC in US. The domain was registered 2326 days ago through get.gov. 21 domains and 17 IPs were contacted, over 164 HTTP requests. This is a point-in-time observation from 21 Aug 2026; the page may have changed since.
Scan result
- Verdict: malicious (score 100) · Confidence 100%
- Scanned URL:
https://applevalleyca.gov/ - Domain: applevalleyca.gov · IP: 45.63.49.195 · AS20473 · US
- Server: nginx
- Page title: Forbidden Access
- HTTP status: 403 · text/html; charset=UTF-8
- Registrar: get.gov · domain age 2326 days · created 2020-04-07
- TLS issuer: C=US, O=Let's Encrypt, CN=YE1 · valid to Nov 17 23: · subject CN=applevalleyca.gov
- Evidenced operator: Town of Apple Valley
- HTTP requests captured: 164 · cookies set: 6 · outgoing links: 82
- Scan tier: standard · observed 2026-08-21 15:24:17 UTC
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- phishing
Why this verdict
- Runtime data beacon to analytics3.wpmudev.com
- Runtime data beacon to api.userway.org
- Runtime data beacon to teamup.com
- Runtime data beacon to graph.instagram.com
- Domain impersonates apple (combosquat)
- Certificate issued < 48h ago
Detected technologies
- Nginx
Contacted infrastructure
- 45.63.49.195 - AS20473 Vultr Holdings, LLC (United States)
- 142.251.222.3 - AS15169 Google LLC (Japan)
- 103.180.114.1 - AS200325 BUNNYWAY, informacijske storitve d.o.o (Australia)
- 104.17.24.14 - AS13335 Cloudflare, Inc. (United States)
- 142.251.222.8 - AS15169 Google LLC (Japan)
- 157.240.8.174 - AS32934 Facebook, Inc. (Australia)
- 142.251.150.119 - AS15169 Google LLC (United States)
- 142.250.195.131 - AS15169 Google LLC (India)
- 142.251.222.14 - AS15169 Google LLC (Japan)
Observed indicators
- applevalleyca.gov
- fonts.googleapis.com
- use.fontawesome.com
- applevalley.org
- cdn.userway.org
- static.ctctcdn.com
- fonts.gstatic.com
- analytics.wpmucdn.com
- cdnjs.cloudflare.com
- www.googletagmanager.com
- www.instagram.com
- analytics3.wpmudev.com
- www.google.com
- api.userway.org
- www.google-analytics.com
- teamup.com
- www.gstatic.com
- static.cdninstagram.com
- listgrowth.ctctcdn.com
- scontent-syd2-1.cdninstagram.com
Questions about applevalleyca.gov
- Is applevalleyca.gov safe?
- No. MalwareAnalyzer scanned applevalleyca.gov on 21 Aug 2026 and returned a malicious verdict with a score of 100 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
- How was applevalleyca.gov checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of applevalleyca.gov
Scanned on MalwareAnalyzer by Cyble · Open interactive scan