jk.applejuicedesign.com - suspicious URL scan, 20 Aug 2026
MalwareAnalyzer by Cyble scanned jk.applejuicedesign.com and returned a suspicious verdict (score 33), categorised as phishing. The page resolved to 35.187.82.108 on Google LLC in BE. The domain was registered 2892 days ago through OVH sas. 12 domains and 6 IPs were contacted, over 32 HTTP requests. This is a point-in-time observation from 20 Aug 2026; the page may have changed since.
Scan result
- Verdict: suspicious (score 33) · Confidence 39%
- Scanned URL:
https://jk.applejuicedesign.com/ - Domain: jk.applejuicedesign.com · IP: 35.187.82.108 · AS396982 · BE
- Server: openresty
- Page title: JK Finanz
- HTTP status: 200 · text/html; charset=utf-8
- Registrar: OVH sas · domain age 2892 days · created 2018-09-19
- TLS issuer: C=US, O=Let's Encrypt, CN=YR2 · valid to Nov 17 21: · subject CN=jk.applejuicedesign.com
- HTTP requests captured: 32 · cookies set: 1 · outgoing links: 94
- Scan tier: standard · observed 2026-08-20 19:42:06 UTC
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- phishing
Why this verdict
- Domain impersonates apple (combosquat)
- Certificate issued < 48h ago
Contacted infrastructure
- 35.187.82.108 - AS396982 Google LLC (Belgium)
Observed indicators
- jk.applejuicedesign.com
- res2.yourwebsite.life
- wl-apps.yourwebsite.life
- www.provenexpert.com
- wpcc.io
- facebook.com
- www.google.com
- applejuice.design
- static.getclicky.com
- app.weblium.com
- applejuicedesign.com
- api.applejuicedesign.com
- 35.187.82.108
- 34.120.160.112
- 104.16.225.240
- 130.211.24.164
- 34.102.149.160
- 35.205.43.99
- https://jk.applejuicedesign.com/
- https://res2.yourwebsite.life/
Questions about jk.applejuicedesign.com
- Is jk.applejuicedesign.com safe?
- No. MalwareAnalyzer scanned jk.applejuicedesign.com on 20 Aug 2026 and returned a suspicious verdict with a score of 33 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
- How was jk.applejuicedesign.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of jk.applejuicedesign.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan