Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo INTEGRITEK.NET

Group: Clop

Discovered by ransomware.live: 2026-01-25

Estimated attack date: 2026-01-25

Country: US

Description:

[AI generated] INTEGRITEK.NET, commonly known as "Integritek," is an Information Technology company that offers managed IT services to diverse businesses. They provide technological solutions, including IT support, cybersecurity, cloud services, and disaster recovery. The solutions are designed to optimize business operations, enhance security, and mitigate IT risks. The company operates with a client-centric approach, tailoring IT services according to the specific needs of each business.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 4


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • integritek-net.mail.protection.outlook.com.
TXT Records
  • MS=ms14714783
  • v=spf1 include:smtp.smileback.com mx a ip4:168.245.52.120 ip4:66.219.51.125 ip4:67.78.116.9 include:spf.myconnectwise.net include:9013644.spf05.hubspotemail.net include:spf.protection.outlook.com include:sendgrid.net ~all
  • MS=4C2CE488747DFE599AEFE3C77AE4B741BBCF7F33
Cloud / SaaS Services Detected
HubSpot Microsoft 365 SendGrid

Leak Screenshot:

Leak Screenshot