# m.gomarketssvip.cc — MALICIOUS > m.gomarketssvip.cc is linked to low-risk phishing activity. Avoid sharing personal info and verify site legitimacy before proceeding. ## Summary PhishDestroy identifies m.gomarketssvip.cc as a generic phishing domain with a low risk level. The domain was registered recently, indicating potential use in deceptive campaigns targeting users for sensitive data. The domain resolves to IP address 104.21.75.17 and is registered via Gname.com Pte. Ltd. VirusTotal flags this domain by one out of 95 vendors, suggesting limited but present suspicion. Infrastructure points to typical phishing setup with newly created domain and minimal detection. Currently active, the domain requires caution from users. PhishDestroy recommends avoiding interaction and refraining from submitting personal or financial information. Security teams should monitor for related phishing attempts and consider blocking this domain preemptively. ## Threat Details - Verdict: MALICIOUS - Site status: alive (HTTP 403) ## Domain Intelligence - Registered: 2025-10-02 05:58:03 - Registrar: Gname.com Pte. Ltd. - Country: SG - IP: 104.21.75.17 - Nameservers: finley.ns.cloudflare.com paris.ns.cloudflare.com ## Detection Status - VirusTotal: 10 vendors flagged Vendors: ["Forcepoint ThreatSeeker"] - Google Safe Browsing: clean - Blocklists: 0 hits ## Evidence - Screenshot: https://i.ibb.co/YBMF2rBy/4f58f6dfb04a.png - Cloudflare Radar: https://radar.cloudflare.com/scan/9b2c1265-fea3-462e-a3ea-2ba0a880f145 - PhishDestroy: https://phishdestroy.io/domain/m.gomarketssvip.cc/ - LLM endpoint: https://phishdestroy.io/domain/m.gomarketssvip.cc/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/m.gomarketssvip.cc/ Last updated: 2026-03-19