Gridinsoft Logo

Uae.ap1.shop Phishing

October 1, 2026 at 10:52 AM
Phishing
Checked by Website Reputation Checker
Table of Contents
Danger Zone
Risky Territory
Caution Advised
Trusted but Verify
Safe & Secure

Uae.ap1 → Safety Check

First checked July 28, 2026 at 1:09 PM
Website content and technical signals analyzed
Method: automated checks.
Phishing This site is classified as Phishing based on multiple risk signals, including 13 blacklist detections, no established public user-review history, and phishing-related signals. These risks are driven by active warning signals despite the site's longer domain history.

How we scored uae.ap1.shop

Tech signals:
Web Application, UniApp Framework, Cloudflare Browser Insights, Vue.js Framework
Negative signals:
  • security-provider warnings
  • multiple malware or phishing blacklist detections (12)
  • a low third-party reputation score
  • phishing-style impersonation signals
  • heuristic signals associated with phishing
  • limited independent reputation data
  • automated caution checks
  • the exact application implements a deposit-based task scam
  • the platform collects credentials and financial-account data
  • the public backend links a multi-country retail-impersonation network
Positive signals:
  • a long-term domain history (4.8 years)
  • an active SSL certificate (3 months)
Last checked October 1, 2026 at 10:52 AM by Gridinsoft Trust Model v2.5.5
Independent Gridinsoft analysis

What Gridinsoft observed on uae.ap1.shop

A Gridinsoft threat analyst reviewed the site directly and documented the evidence behind this decision.

Current review Review ID GMA-20260826043915-9b3b04cf
Reviewed
by Gridinsoft Threat Analyst
Analyst finding
Phishing
Evidence basis
First-party site analysis External vendor intelligence: Context only — not used for this decision

The exact host is a malicious financial phishing and task-scam application. It solicits credentials, deposits, payment vouchers, bank details, and withdrawal passwords through a VIP commission and matched-order workflow with frozen-account states. The customer screenshot shows active AED deposits in the same flow, and the live public backend links the site to a broader multi-country retail-impersonation network. The current Phishing classification should be retained.

Analyst findings

  • Critical 1
  • High 2
  1. Critical

    The exact application implements a deposit-based task scam

    The application combines invitation registration, VIP tiers, matched tasks or orders, promised commissions, minimum balances, repeated top-ups, frozen states, payment-voucher uploads, and withdrawals. The customer's exact AED deposit history confirms that the financial deposit workflow is in active use.

  2. High

    The platform collects credentials and financial-account data

    The current code requests phone and login credentials, bank-account details, payment vouchers, and a separate withdrawal password. The public configuration also enables plaintext withdrawal-password display, creating a direct account and financial-data risk.

  3. High

    The public backend links a multi-country retail-impersonation network

    The same live API links related invitation-registration hosts across countries and retail-themed names, including SHEIN, Alibaba, and noon variants. This is infrastructure-level evidence from the operator's own backend, not merely a domain blacklist label.

Review 4 documented observations View evidence
01 Content

The exact host returned HTTP 200 and loaded a mobile single-page application whose current code implements invitation-only registration, login, VIP levels, matched shopping tasks or orders, commission balances, top-ups, payment-voucher uploads, bank-account collection, withdrawal passwords, frozen orders, and withdrawal workflows. These functions form the characteristic deposit-and-task loop of a task scam rather than a normal retail checkout.

  • HTTP status 200
  • Final URL https://uae.ap1.shop/
  • Page element Registration requests a phone number, login password, confirmation, and invitation code.
  • Page element The application exposes VIP levels, commission rates, task or order matching, minimum balances, recharge, payment-voucher upload, bank details, and withdrawal passwords.
  • Analyst observation The public code includes frozen-order and customer-service-to-unfreeze states.
02 Content

The unauthenticated same-host API returned live configuration for the task platform. It enabled referral commissions, task limits, automatic freezing and unfreezing, VIP upgrades, deposits, withdrawals, bank-account collection, and plaintext withdrawal-password display. Its platform identity was internally inconsistent, and the country list linked related registration hosts using SHEIN, Alibaba, noon, and other retail-themed names across multiple countries.

  • HTTP status 200
  • Public artifact URL https://uae.ap1.shop/api/mall/common/getSysParamConfig
  • Public artifact URL https://uae.ap1.shop/api/mall/common/country/list
  • Page element The configuration identified a Chinese platform name, Dominican Republic country value, ETB currency, and an unrelated mooncity.top website.
  • Page element Related country entries linked registration sites on shein-vip.shop, alibaba-vip.shop, noon-vip.store, ap1.shop, and other domains.
03 Content

The customer-supplied screenshot shows the application's Bill page with Top up and Withdraw tabs, a new AED 300 deposit marked Pending review, and earlier AED 65, AED 50, and AED 20 deposits marked Recharge successful. This exact supplied object is consistent with the deposit history implemented by the reviewed application.

  • Screenshot SHA-256 47ee66696e81c9f3564c2f063ca841e313864902701c99e51260e5fedb2bd272
  • Page element AED 300 — Pending review
  • Page element Earlier AED 65, AED 50, and AED 20 deposits are shown as Recharge successful.
04 Historical content

Public URL-scan records show six exact-host submissions from May through July 2026, mainly the same invitation-code registration URL and one bank-card-edit path. Parent-domain results also show related country subdomains with invitation registration pages. OTX collections mention task scams and retail-brand impersonation, while Wayback returned no successful exact-host HTML capture.

  • Analyst observation Six exact-host URL-scan records included repeated registration submissions with invitation code JCNFDY7N and a bank-card-edit path.
  • Analyst observation Parent-domain URL-scan records included bd.ap1.shop, om.ap1.shop, and gt.ap1.shop registration pages.
  • Analyst observation No successful exact-host HTML snapshot was returned by Wayback.

Scope and limitations

  • No account was created, no credentials or bank details were submitted, and no further payment or withdrawal was attempted by Gridinsoft.
  • The review did not identify the real-world identity of the operator or determine whether any specific payment can be recovered.
  • Public URL-scan, threat-intelligence, search, and archive indexes are incomplete; the verdict does not depend on their completeness.
  • The verdict applies to uae.ap1.shop and the exact reviewed application and backend evidence; related hosts require their own current object-level review.

What is Uae.ap1?

We flagged Uae.ap1.shop as phishing. The page behavior matches a common credential-theft flow: impersonation first, urgency second, data request last.

Typical prompts on sites like this include account alerts, failed-delivery notices, or "verify now" dialogs asking for passwords, card numbers, or one-time codes. Do not submit credentials here. Open the real service in a new tab and check your account directly.

This domain was registered November 25, 2021 at 10:50 PM through the company unknown and ownership information is not publicly available. Complaint contact not found.

Is uae.ap1.shop safe?

— Unfortunately, not likely.

🚨 Gridinsoft blocks this website because it was classified as phishing.

uae.ap1.shop should not be treated as a safe website. Gridinsoft gives it a 1/100 trust score, and publicly displayed security sources report 13 warning(s). Avoid entering passwords, personal details, or payment data.

Why is uae.ap1.shop marked "Phishing"?

Gridinsoft evaluates uae.ap1.shop, focusing on limited website popularity, suspicious content indicators (Blacklisted by Security Providers, Phishing - High Risk, Heuristic - Phishing), hosting technology and infrastructure, SSL certificate status, website reputation across multiple databases, customer reviews from various independent platforms. We weigh these indicators to calculate the trust score.

Note: Automated systems are not perfect — while the evidence suggests risk, there is still a chance the site is legitimate. We recommend you check the website using detailed analysis or by contacting the company directly through verified channels.

Uae.ap1 Digital Footprints

A structured view of the site's detected themes, page signals, and related online footprint elements.

Web Application

This site is configured as an installable web application (PWA-style behavior) with app-like interaction patterns.

UniApp Framework

This site uses the UniApp framework that allows developers to build applications for mobile (iOS, Android), web, and mini-programs (e.g., WeChat) using a single codebase based on Vue.js.

Cloudflare Browser Insights

This website is proxied through Cloudflare's CDN/network and has Cloudflare Browser Insights enabled.

Vue.js Framework
Blacklisted by Security Providers

Security intelligence signal: A security-provider signal contributes to the automated assessment of uae.ap1.shop. Publicly displayable provider verdicts, when available, are reported separately; some source details may be restricted by license.

Phishing - High Risk

Automated analysis detected strong patterns on this site associated with phishing or brand impersonation. Exercise extreme caution and avoid entering passwords, verification codes, payment details, or personal information until legitimacy is independently confirmed.

Heuristic - Phishing
Heuristic Risk
Established Domain

ap1.shop has maintained active domain presence over time, indicating operational continuity.

Listed by Gridinsoft

Gridinsoft Internet Security classified this site as unsafe. As a VirusTotal partner, our detections contribute to broader protection across tools and browsers.

Low Scamadviser Score

Independent security assessment from Scamadviser indicates this site has received a low trust rating, suggesting potential security risks or operational concerns requiring user caution.

Color Guide
  • Requires special attention Marks high-risk findings that should be reviewed first.
  • Exercise caution Highlights areas involving user data, payments, or permissions.
  • Positive indicators Shows trust signals that support the site's reliability.
  • Neutral General context that does not increase or reduce risk on its own.

External provider warnings: 13/28 Phishing

This section shows what independent external security sources say about this site.

A warning appears when one or more sources report malware, phishing, abuse, or other safety concerns. Each row shows the source and its verdict.

If no source reports a warning, the site is shown as clear in this section.

alphaMountain.ai
Phishing
CRDF
Malicious
CyRadar
Phishing
Forcepoint ThreatSeeker
Phishing
Fortinet
Phishing
G-Data
Phishing
Lionic
Phishing
Sophos
Phishing
VIPRE
Phishing
Webroot
Malicious
Scamadviser
Warned
BitDefender
Warned
ESET
Suspicious

External provider results for Uae.ap1.shop, last checked September 30, 2026. — VirusTotal

Domain Information

Created November 25, 2021 at 10:50 PM
Domain Age 4.8 years
Top Level Domain .shop Generic TLD
Subdomain uae

Technical Details

IP Address 172.67.170.107
Hosting Provider AS13335 Cloudflare, Inc. San Francisco, California, US
SSL Certificate YE2 TLSv1.3 · Valid for: 3 months · from September 8, 2026 at 3:25 PM · to December 7, 2026 at 3:25 PM

Content from the analyzed website

Quoted for security analysis. These statements belong to the source website and are not endorsed by Gridinsoft.

Original page title register
Primary Language
Mentioned hosts (6)
xiaoqi-shop.oss-ap-southeast-1.aliyuncs.com static.cloudflareinsights.com cdn.dcloud.net.cn at.alicdn.com uae.ap1.shop xb-oss.shein-vip.shop

Security Analysis

Detection Signatures These signatures are used to generate the security fingerprint below.
Web Application UniApp Framework Vue.js Framework Phishing - High Risk
Security Fingerprint Unique identifier based on site analysis
Signs You're Dealing With an Online Scam
Signs You're Dealing With an Online Scam
Scammers have devised new ways to deceive users, and what was relevant ten years ago may not be applicable today. In this post, we have compiled the most current types of online scams.
Read Now

How to block Uae.ap1.shop?

Our Anti-Malware can automatically block access to uae.ap1.shop if it is flagged as malicious.

  1. Install and run the protection.
  2. The program will block flagged domains and remove related threats.

Exclusion

If you believe uae.ap1.shop is safe, you can add it to the exclusion list:

  1. Open Gridinsoft Anti-Malware → Tools → Ignore List.
  2. Go to the Internet tab and add uae.ap1.shop.

See detailed instructions for more options.

Are You the Owner?

If you own Uae.ap1.shop and want to challenge the trust score, please submit a review request via portal.gridinsoft.com. There you can claim your profile and add verified company/contact details. If you cannot access the portal, email legal(at)gridinsoft.com with proof of legitimacy and contact details. We never charge website owners for reviews or reconsideration requests. For more information, please review our Disclaimer.

Leave a review

Share your real experience with uae.ap1.shop. Is it a trustworthy site, or did you encounter any issues? The more detail you provide, the more helpful your review is for others!

Publication Tip

- Your feedback helps us improve our security scores.
- Detailed reviews describing your real-life experience have a much higher chance of being published.
- Your email remains confidential.

Gridinsoft Portal
Signed in via Gridinsoft Portal · View profile
Your score for uae.ap1.shop

Similar website

Matched by website fingerprint
1
points /100
The score is based on a 1-100 scale, with 100 being the most reputable.
Check another website
Verify the security of domains and services based on 10M+ real websites.
Is This Your Website?
Think your website was scored unfairly? Request a reevaluation and our team will take another look.
Flag for Reevaluation
Have you had a personal experience with Uae.ap1.shop?
Share your thoughts and rate it to help others make informed decisions!
Is This Your Website?
Think your website was scored unfairly? Request a reevaluation and our team will take another look.
Flag for Reevaluation
Have you had a personal experience with Uae.ap1.shop?
Share your thoughts and rate it to help others make informed decisions!