Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo BHI Co., Ltd.

Group: Qilin

Discovered by ransomware.live: 2025-10-13

Estimated attack date: 2025-10-13

Country: KR

Description:

BHI Co., Ltd. engages in the manufacturing and supplying of power plant equipment worldwide. It offers pulverized coal fired boilers, heat recovery steam generators, circulating fluidized bed combustion boilers, oil and gas boilers, industria ...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • spam.bhi.co.kr.
TXT Records
  • v=spf1 ip4:220.92.191.230 ip4:220.92.191.231 ip4:220.92.191.232 ip4:220.92.191.233 ip4:220.92.191.234 include:spf.protection.outlook.com ~all
  • 89/JKT22PciIwdnZ95fqOY4EOw7r3blOCvyOZOvg+Ka4mlKMg5c0Tp0hrTFal0D7mYkF10fEhJP4o355+80Fyg==
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot