ipv[.]bcv[.]mybluehost[.]me
“Zuhause - Jojoro”
Kanıt özeti
This domain is flagged for credential harvesting phishing activity, classified under an elevated risk level. Analysis indicates the infrastructure was designed to mimic legitimate login portals, likely targeting users through deceptive email or SMS campaigns. The page title 'Zuhause - Jojoro' suggests an attempt to impersonate a German-language service, though no legitimate entity matches this branding. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Domain.com and resolves to the IP address 50.6.253.242, hosted on Oracle Corporation's AS31898 network in the United States. Security vendors on VirusTotal flagged the domain in 11 out of 95 scans, while it appears on one security blocklist. The SSL certificate, issued by Let's Encrypt (R12), indicates a short-lived deployment typical of phishing operations. The domain has since been taken offline, though historical resolution data confirms its prior activity. Organizations should implement the following mitigation measures: block the domain and its resolving IP (50.6.253.242) at perimeter security controls, including firewalls and email gateways. Monitor for residual DNS queries or cached resolutions tied to this infrastructure. Security teams should review logs for connections to the IP or domain, particularly from endpoints that may have interacted with phishing lures. If the page title 'Zuhause - Jojoro' appears in web traffic or proxy logs, investigate for credential exposure or unauthorized access attempts. Deploy indicators of compromise (IOCs) to endpoint detection systems to prevent future interactions with this or related infrastructure.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of ipv.bcv.mybluehost.me · checked Mar 2, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin