Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo MARELLI.COM

Group: Clop

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: JP

Description:

[AI generated] "MARELLI" is a global automotive parts supplier with a focus on designing and producing advanced systems and components. With operations in 23 countries, the company contributes to safer, more sustainable mobility for the world. Their products include powertrain and electrification systems, electronics, lighting systems, and motor sports products. "MARELLI" partners with leading car makers worldwide to drive automotive evolution.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 54

Third Party Employee Credentials: 77


External Attack Surface: 19



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse register.it
MX Records
  • mxa-00644e02.gslb.pphosted.com.
  • mxb-00644e02.gslb.pphosted.com.
TXT Records
  • adobe-idp-site-verification=0afbcf286a9f9acea4640417f7f3cfadc07a79653484d9021925878edc826b13
  • v=spf1 ip4:212.177.139.128/26 ip4:151.92.154.240/29 ip4:211.8.77.66 ip4:211.8.77.67 ip4:211.8.77.68 ip4:61.203.130.194 ip4:61.203.130.195 ip4:61.203.130.196 ip4:210.175.6.135 ip4:210.146.56.166 ip4:210.254.3.0/28 ip4:201.163.113.98/31 ip4:52.185.138.171 i" "p4:217.33.205.103 ip4:211.8.77.9 ip4:13.78.60.39 ip4:143.55.146.6 ip4:143.55.148.172 ip4:35.214.208.81 ip4:35.214.213.218 ip4:35.214.183.81 ip4:35.214.212.238 include:spf.protection.outlook.com include:_spf-dc2.sapsf.com include:_spf-dc57.sapsf.eu -all
  • 3gt3990tzbwz1zqvc318n0m36yp39flt
  • facebook-domain-verification=5or74i4j5rifn6tgataovesltxuz54
  • apple-domain-verification=EFMCs4ri0MU7GNRu
  • 222f3ww32sgrrg7rnxysv45fjc1tcf2g
  • adobe-aem-verification=marelli.com/129403/1266029/25366950-a6cd-4112-a2ef-af7623b61717
  • _xonq89hgw3ocgdyph0a67iolxu70mqy
  • successfactors-site-verification=ZTEzYjM3NWQ0NWVmZGRmYzAyMWY3MzEyZDViZTI1ODFlYjZmMjk1ZDEzYmQ3MWRhNjZhMjVhOWE5N2VjMzhhYQ==
  • cisco-ci-domain-verification=436b5deb9ffec34ea516ebb639a016096ec08ecc239b66857527c0b547bda964
  • pardot525141=2089dce142f1c38a9a1fe165f05918e9d2f109d5f8afd5dc85308d9a4447b135
  • MS=ms36174905
  • facebook-domain-verification=hfeoqv7yq428ustxntofddfs9m7rx9
  • pardot525141=5a3cc7d59a3a9b86d8c7631814a50cfbf28738d8252dfd0df533f447ea698023
  • docusign=d0b69d1c-fec9-4aaa-a2b3-e7e090af9ee2
  • 38b66sz5mrbrtkdrxd4wv09763y0w2x8
  • docusign=7679ee2d-aff0-49a2-a2ba-a3e7df36524e
  • 2dt3mn7pbsrjktcmbpkg1xnc3bcs9ftf
  • oaGAy1yBnRlIuswmhI7c9dZeaaifXWKvKgBKSgSk53YpGzEdhRwwrVIzgDvVnMlByksueKtlWIcxpq5mRV3Tpw==
  • g1t13x4smcmh6p9tczw1p9y3dq667c6x
  • cisco-ci-domain-verification=7e2476325bf28ea91fc608cf3deb1b9b474ccb3fac76f92583f71442070ff65
  • atlassian-domain-verification=AhJmHwy1QZtkKxjiW4gpyaWWH3q4CbA0ccJxUXxsqNuOMANhmzZsu5x5aGfogpgA
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 Salesforce Cisco DocuSign