www.xmmtbx.com
Classification: Malicious
www.xmmtbx.com is a malicious hostname. Linked to Remcos malware. Reported by 1 threat source, last seen 2026-08-10.
Current activity
- Offline β no longer resolving. Last online 2026-08-10 15:25:04.
- Command & Control server β Used by cybercriminals to control victim computers.
MITRE ATT&CK associations
Malware families: REMCOS (S0332)
Blacklist sightings
| Description | Source | First seen | Last seen | Labels | MITRE ATT&CK |
|---|---|---|---|---|---|
| Remcos | ThreatFox Abuse.ch | 2026-08-10 15:05:34 | 2026-08-10 15:25:04 | botnet malicious-activity | S0332 Remcos |
Tags
remcos remcosrat remvio socmerWhois information
- Domain
- xmmtbx.com
- TLD
- com
- DNSSEC
- ['unsigned, Unsigned']
- Nameservers
- NS1.SUSPENDED-DOMAIN.COM, NS2.SUSPENDED-DOMAIN.COM, ns1.suspended-domain.com, ns2.suspended-domain.com
- Registrant
- PDR Ltd. d/b/a PublicDomainRegistry.com
- Address
- 209 smiduth street 1st floor
- City
- Ermelo
- State
- Gauteng
- Country
- ZA β South Africa πΏπ¦
- Contact email
- [email protected], [email protected]
- Domain created
- 2026-07-05 13:31:39
- Domain expires
- 2027-07-05 13:31:39
- First indexed
- 2026-08-10 15:25:04
- Last updated
- 2026-08-10 15:25:04