Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo MAZDA.COM

Group: Clop

Discovered by ransomware.live: 2025-11-21

Estimated attack date: 2025-11-21

Country: JP

Description:

[AI generated] Mazda.com is the official website of the Mazda Motor Corporation, a Japanese multinational automaker established in 1920. Known for its production of stylish, high-quality cars and sports utility vehicles with innovative technology, Mazda offers users an extensive view of its products and services on its website. It features various automobile models, information on Mazda car dealerships, and details about vehicle features and specifications.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 25

Third Party Employee Credentials: 10


External Attack Surface: 14


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.master@brights.jp
  • abuse@1api.net
  • info@domain-contact.org
MX Records
  • gw117177.fortimail.com.
TXT Records
  • v=spf1 ip4:210.154.137.152 ip4:210.154.137.153 ip4:209.52.117.177 ~all
  • MS=ms55567870
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot