Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo HTHELI.COM

Group: Clop

Discovered by ransomware.live: 2026-02-07

Estimated attack date: 2026-02-07

Country: CN

Description:

[AI generated] "HTHELI.COM" is an online platform dedicated to providing diverse high-end charter helicopter services. They specialize in assisting clients with various helicopter needs, including aerial work, air tours, private hire, VIP charter and aerial photography, among others. The platform connects users with a comprehensive list of experienced and professional charter operators globally.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@tucows.com
MX Records
  • htheli-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 a:mail.secure-by-design.com a:mail.netidea.com a:zimbra.sbdemail.com a:www.htheli.com include:spf.protection.outlook.com -all
  • MS=ms79169636
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot