Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Warlock
Discovered 2025-06-11 11:54 UTC
Est. attack date 2025-04-28
Country JP

Description:

[AI generated] N/A

Infostealer activity detected by HudsonRock

Compromised Employees: 18

Compromised Users: 154

Third Party Employee Credentials: 89


External Attack Surface: 33


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • kmmp-com-pe.mail.protection.outlook.com. Microsoft 365
TXT Records
  • tmdd7jwvlrjp3xkldc9x608xql8yy7rg
  • brevo-code:xsmtpsib-fb1f15bbf6c70f1136610fdc3333e9e4a7a85a5df84a41c2cd0db14994c282b6-1CHvJc7jGV4xPI0w
  • d00pjc99feaub4sjl2rgq865od
  • kh5d8e6bmpn7olldo9bdvalktb
  • MS=28AC9FB0D8CD56965373B53CB8CAB298A8F46E79
  • brevo-code:97df4591a5a7c03fe20060594eaa7b64
  • qf4d2aa3dpqg03959r0q8lf3vf
  • t8aao8cf32ttpj1okn4fo9li25
  • brevo-code:baImysZAUhqcdLYv
  • xsmtpsib-fb1f15bbf6c70f1136610fdc3333e9e4a7a85a5df84a41c2cd0db14994c282b6-1CHvJc7jGV4xPI0w
  • irih5u26264lcb8t68khacbpui
  • au3jl0ad5fjv3v3riaqqlmac5k
  • v=spf1 ip4:190.116.19.97/29 ip4:207.126.144.0/20 ip4:64.18.0.0/20 ip4:153.92.249.21/32 ip4:74.125.148.0/22 ip4:190.116.25.14/32 ip4:190.116.25.4/32 include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.