Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo 51talk.com

Group: lockbit3

Discovered by ransomware.live: 2025-03-18

Estimated attack date: 2025-01-30

Country: PH

Description:

A lot of interesting info: 1G - 51TalkActivity_backup_2025_01_25_030001_1281267.bak 1G - 51TalkNewStaff_backup_2025_01_25_030001_1281267.bak 1G - 51TalkOA_backup_2025_01_25_030001_1437541.bak 9G - 51TalkOAtask_backup_2025_01_25_030001_1281267.bak...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 60

Compromised Users: 3208

Third Party Employee Credentials: 50


External Attack Surface: 136



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • DomainAbuse service.aliyun.com
MX Records
  • mx1.qiye.aliyun.com.
  • mx2.qiye.aliyun.com.
TXT Records
  • google-site-verification=4epKg8f-ZAfyWmTe7EvqGAOOY941CgVprSjr9zFThYw
  • v=spf1 include:spf.qiye.aliyun.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot