Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Solarpro Holding

Group: Coinbasecartel

Discovered by ransomware.live: 2025-12-12

Estimated attack date: 2025-12-12

Country: BG

Description:

Solarpro Holding is a leading EPC contractor specializing in the design, construction, and integration of photovoltaic (PV) plants with over 7 GW o...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 6

Compromised Users: 6

Third Party Employee Credentials: 22


External Attack Surface: 13


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
TXT Records
  • zoho-verification=zb19359776.zmverify.zoho.eu
  • MS=4FFB4D697CEC45C020A4ACD91F3633DFF959EC4C
  • MS=ms62979804
  • google-site-verification=PXokdgPDJgBKpF03beoHTOvIaQVneRvDiOIpWHx8rkA
  • google-site-verification=nj0XScpoZnkFvYIQ3G9Mt0I9n3OWEMyzygtaYGeD0_U
  • v=spf1 include:_spf.google.com include:spf.mandrillapp.com include:servers.mcsv.net ip4:198.2.181.252 ~all
Cloud / SaaS Services Detected
Mailchimp Microsoft 365 Zoho Campaigns Mandrill

Leak Screenshot:

Leak Screenshot