Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Sofo Foods

Group: payoutsking

Discovered by ransomware.live: 2025-08-21

Estimated attack date: 2025-08-05

Country: US

Data exfiltrated: 770GB

Description:

[AI generated] Sofo Foods is a family-owned food distribution company specializing in Italian and Mediterranean products. Founded in 1949, the company offers a wide range of products including deli items, produce, bakery items, meats, and cheeses. Sofo Foods mainly serves restaurants and retailers in the midwest and southeastern regions of the United States. It also provides catering services, food preparation tips, and recipes to its clients.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 0


External Attack Surface: 8


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mail.sofofoods.com.
TXT Records
  • MS=ms98782697
  • qehgghue6fpg8te5qlf1reg3lr
  • ZOOM_verify_cwUD8KibQCaC_ZZAnMd8lw
  • MS=6AF804F11F0BBC61F7C2299660E055E4B9FBC98E
  • N0U7UNLV1R0YK2PIFNOOOJ835RT6VUSQI27ZT86U
  • v=spf1 a mx include:es._spf.adp.com include:gateway.serverhost.net ip4:162.232.22.12 ~all
Cloud / SaaS Services Detected
Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot