Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Smeg

Group: interlock

Discovered by ransomware.live: 2024-10-24

Estimated attack date: 2024-10-24

Country: IT

Description:

Smeg, an acronym of Smalterie Metallurgiche Emiliane Guastalla, is an Italian home appliance manufacturer We present to you a large collection of corporate documents, including a dump of mailboxes of all employees. Company developments and personal data of employees.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 17

Third Party Employee Credentials: 0


External Attack Surface: 6



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse register.it
MX Records
  • smg-esva01.smeg.it.
  • smg-esva02.smeg.it.
TXT Records
  • google-site-verification=9hduVeySc2nRkox7vz4kVNmvRagX2B86wkcwB1tKCiA
  • amazonses:TihNEt9+FcI4nZwDH5LCUJBjPdJfeaEYJiN/LhdfNgY=
  • amazonses:aeZmQBCRlaFZ/nqfTNHkDrQZBWgm5tklZRcYyV+3fHk=
  • ca3-96433797b2064004a184ba3ec8cd7878
  • facebook-domain-verification=c5eo0z0ael9nbnboyl38mdkmk71m95
  • v=spf1 mx include:spf.smeg.it include:docebosaas.com include:spf.protection.outlook.com include:musvc.com include:amazonses.com ip4:109.69.200.47/32 ip4:109.168.28.0/22 -all
  • google-site-verification=rKhchOe-u5X61FowEdS4ol3dhPCLxX-WPusNMX2qQKA
  • ca3-cb998d472d3a446686d81d40a18cfe24
  • MS=ms48394716
  • sophos-domain-verification=62683a0e8d7365980bb32cc860e73f6dd98ceb7d
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Sophos

Leak Screenshot:

Leak Screenshot