Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Larimart S.P.A

Group: Crypto24

Discovered by ransomware.live: 2025-07-16

Estimated attack date: 2025-07-15

Country: IT

Description:

We have secured 2TB of confidential data : NATO-linked armor specifications and ballistic protection designs,EUC/EUS certificates and UAMA export control documents,VTLM test data and confidential field performance results from Santa Severa,Strategic planning documents, internal pricing, MoD, invoices and tactical customer lists,Archives of confidential consortium contracts and weapon system development records.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • larimart-it.mail.protection.outlook.com.
TXT Records
  • v=spf1 ip4:89.46.225.33 ip4:151.1.195.0/24 ip4:151.9.248.73/29 ip4:10.213.52.40 include:spf.protection.outlook.com +a +mx ~all
  • MS=ms369fcd64-73ce-4f52-9453-db1f8af17caf
  • MS=2085CC842E22114A5A0DF23DDEB01BC7502ACFFD
Cloud / SaaS Services Detected
Microsoft 365