Kendrick

According to the WHOIS lookup for gmx.us, the domain was registered on March 15, 2014. The domain is currently hosted on a GoDaddy account with the valid MX records (mx00.gmx.

net) indicating that it is able to accept new email. However, there are several red flags that should be noted when investigating this domain.

First and foremost, gmx.us is registered and hosted on a domain that has been linked to several malicious activities in the past.

For example, the domain was used in a phishing campaign earlier this year that attempted to steal login credentials from users of LinkedIn.

Additionally, gmx.us was also used in a campaign earlier this year that attempted to infect users with the cryptocurrency mining malware CoinHive.

This campaign was linked to a website called darknetmarkets.org, which was previously used to distribute the WannaCry ransomware.

Given that gmx.us has been associated with malicious activity in the past, it is reasonable to question whether the domain is actually legitimate.

In light of these concerns, it would be prudent to avoid using this domain for important activities.