Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ermat Grup

Group: Nightspire

Discovered by ransomware.live: 2025-12-06

Estimated attack date: 2025-12-06

Country: TR

Data exfiltrated: 20 GB

Description:

Ermat Grup



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse metunic.com.tr
  • abuseverisign metunic.com.tr
MX Records
  • mx01.vargonen.net.
TXT Records
  • google-site-verification=nV3kQcP4XFHzb5sG-PcUb38J-oGT-1ZIqrZ-JTVm8Lg
  • MS=ms71041536
  • v=spf1 mx a a:mail.ermatgrup.com a:smtp.ermatgrup.com ip4:178.18.192.192/28 ip4:178.18.193.0/24 ip4:37.1.145.18/32 -all
Cloud / SaaS Services Detected
Microsoft 365