Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Stadtwerke Schwerte GmbH

Group: nitrogen

Discovered by ransomware.live: 2025-04-25

Estimated attack date: 2025-04-25

Country: DE

Description:

Stadtwerke Schwerte is a municipal utility company based in Schwerte, Germany. It primarily provides essential services to local residents and businesses.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • stadtwerkeschwerte-de02e.mail.protection.outlook.com.
TXT Records
  • google-site-verification=U3MLVeRBM3XMPQTY30CVoth0EemVKQtnFtcxMtxERKw
  • v=spf1 ip4:194.9.124.5 ip4:194.9.124.79 ip4:168.119.8.140 ip4:188.245.40.131 a:mail-o365.sws-schwerte.de a:mail.pi-asp.de a:webmetering.de include:spf-service.sivdc.services " "include:_spf.supportbyrobin.com include:amazonses.com include:spf.crsend.com include:spf.protection.outlook.com -all
  • MS=ms60857304
  • 7aRSYxSdWY38PkOwq5gJGKS9aLO7Dliv3B2eRokIrL03lw34RBY86Lzp1iVJbHFvrUD1p9UulEbB5AUBSHu5mA==
  • google-site-verification=IrO8rYRSPyoykiVcM_IQYsnCRr-Tlo_MZ1HltbPjZho
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365

Leak Screenshot:

Leak Screenshot