Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Egaraset

Group: Dragonforce

Discovered by ransomware.live: 2025-10-27

Estimated attack date: 2025-10-20

Description:

Egaraset specializes in providing adaptable and flexible IT solutions tailored for small and medium enterprises (SMEs) and religious congregations. With over 20 years of experience, they offer services including ERP, financial management, and customer relationship management to improve efficiency for over 400 companies and 1,000 communities worldwide. Their team of IT professionals ensures close and efficient service to clients, understanding their specific needs. The company is committed to evolving its solutions according to the changing environments of its clients


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 3

Third Party Employee Credentials: 0


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse nicline.com
MX Records
  • mail.egaraset.com.
  • mail2.egaraset.com.
TXT Records
  • v=spf1 a mx ip4:83.56.16.135 ip4:93.90.30.33 include:spf.protection.outlook.com ~all
  • MS=ms41221626
  • google-site-verification=ZeQubSSCj7dl_qmyrmjspZQfS1cmpUTxIdcwWvzEclY
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot