Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-07-29
Est. attack date 2025-07-23
Country ES
City Madrid

Description:

DRUNI offers a wide range of online beauty products including per fumes, makeup, and cosmetics at competitive prices. We are ready to upload over 40 GB of corporate documents. Employe e files like DNI and so on, detailed financials, project data, cu stomers information, contracts and agreements with L'oreal, Dior, Channel and others big names.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 10387

Third Party Employee Credentials: 3


External Attack Surface: 101


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • publi.druni.es.
  • publi1.druni.es.
  • publi2.druni.es.
  • publi3.druni.es.
  • publi4.druni.es.
  • publi5.druni.es.
  • publi7.druni.es.
  • druni-es.mail.protection.outlook.com.
TXT Records
  • v=spf1 mx ip4:95.60.240.64/28 ip4:23.249.220.83 include:spf.protection.outlook.com include:_spf.jupiter.salesmanago.pl include:_spf.salesforce.com ~all
  • apple-domain-verification=DAwE1nOsGOzvWug9
  • google-site-verification=wRiI5EKt50hmruPQP3I9qFrW9nVIlgC4cuGW5pwVsH0
Cloud / SaaS Services Detected
Apple Salesforce