Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Play
Discovered 2025-10-28 17:40 UTC
Est. attack date 2025-10-23
Country US

Description:

United States

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 2


External Attack Surface: 1


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 975ab56b2c8adb193ca79913d910ba5226600d9f6786ab37b0295767c4e52137evogence.com.whoisproxy.org
  • 975ab56b2c8adb193ca79913d910ba52e4574231174c8617627faeaa46060314evogence.com.whoisproxy.org
  • 975ab56b2c8adb193ca79913d910ba5221f95f6f01f9e9d640ecc9fd7633be0bevogence.com.whoisproxy.org
  • 975ab56b2c8adb193ca79913d910ba526cfbcfeca3039c1da23952a52aa73e48evogence.com.whoisproxy.org
  • trustandsafetysupport.aws.com
MX Records
  • evogence-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • atlassian-sending-domain-verification=bdf7396a-c7ad-405f-9c92-8a846c6387e6
  • v=spf1 ip4:76.8.67.66 include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot