mybicomo.vip was registered through Dynadot Inc on July 24 2026. The domain is delegated to the shared DNS cluster a.share-dns.com, a3.share-dns.com, b.share-dns.net, and b3.share-dns.net. DNS resolution returns the IPv4 address 203.189.235.157. VirusTotal reports that four of ninety‑one scanning engines have flagged the domain as malicious, indicating a non‑trivial detection consensus.
Independent blocklist monitoring shows the domain appears on three public blocklists and is explicitly listed by PhishDestroy, MetaMask, and SEAL as a phishing source. No public SSL certificate data, HTTP status code, or page title has been published in the current intelligence set, and Safe Browsing or Open Threat Exchange entries are not referenced. Consequently, the exact content hosted at the address remains unverified, but the aggregate evidence from multiple vendors and blocklist operators classifies the domain as a generic phishing infrastructure. Defenders should immediately add mybicomo.vip to DNS‑based deny lists and block outbound connections to 203.189.235.157 at the network perimeter.
Monitoring of the associated nameservers for newly registered sub‑domains is advised, as the shared DNS service can be leveraged to spin up additional malicious hosts with minimal delay. Organizations employing email filtering should treat any messages containing links to this domain as high‑confidence phishing attempts. Continuous re‑evaluation is recommended, given the recent creation date and the potential for rapid evolution of the hosting environment.