theappled.com - malicious URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned theappled.com and returned a malicious verdict (score 100), categorised as phishing. The page resolved to 23.227.38.32 on Shopify, Inc. in CA. The domain was registered 386 days ago through GoDaddy.com, LLC. 15 domains and 10 IPs were contacted, over 274 HTTP requests. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: malicious (score 100) · Confidence 100%
- Scanned URL:
https://theappled.com/ - Domain: theappled.com · IP: 23.227.38.32 · AS13335 · CA
- Server: cloudflare
- Page title: Appled
- HTTP status: 200 · text/html; charset=utf-8
- Registrar: GoDaddy.com, LLC · domain age 386 days · created 2025-08-01
- TLS issuer: C=US, O=Let's Encrypt, CN=YE2 · valid to Nov 19 06: · subject CN=theappled.com
- HTTP requests captured: 274 · cookies set: 7 · outgoing links: 54
- Scan tier: standard · observed 2026-08-22 12:09:15 UTC
Antivirus & YARA (0 of 48 engines)
No engine flagged this page's content.
Categories
- phishing
Why this verdict
- Runtime data beacon to shopify-apps.getsitectrl.com
- Runtime data beacon to tracking.aws.judge.me
- Domain impersonates apple (combosquat)
- Certificate issued < 48h ago
- Matches phishing-kit family "Meta / Facebook Login Kit"
Detected technologies
- Cloudflare
- Shopify
Contacted infrastructure
- 23.227.38.32 - AS13335 Shopify, Inc. (Canada)
- 23.227.39.200 - AS13335 Shopify, Inc. (Canada)
Observed indicators
- theappled.com
- fonts.shopifycdn.com
- cdn.shopify.com
- cdn.judge.me
- cdn1.judge.me
- api.judge.me
- judge.me
- monorail-edge.shopifysvc.com
- otlp-http-production.shopifysvc.com
- scontent-iad3-2.cdninstagram.com
- scontent-iad3-1.cdninstagram.com
- scontent-iad6-1.cdninstagram.com
- shopify-apps.getsitectrl.com
- shop.app
- tracking.aws.judge.me
- 23.227.38.32
- 23.227.39.200
- 34.160.147.240
- 34.149.34.106
- 23.227.39.20
Questions about theappled.com
- Is theappled.com safe?
- No. MalwareAnalyzer scanned theappled.com on 22 Aug 2026 and returned a malicious verdict with a score of 100 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
- How was theappled.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of theappled.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan