Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo PTS Group

Group: qilin

Discovered by ransomware.live: 2025-03-18

Estimated attack date: 2025-03-13

Description:

We are a pan-European IT company specialized in providing data-driven solutions and services. With the motto “Empowering Data-Driven Solutions”, we base our actions on the strengths and capabilities of data. We combine leading technology ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 0

Third Party Employee Credentials: 0


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • ptsgroup-de.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:spf.emailsignatures365.com ip4:185.52.160.11 ip4:20.4.34.201 ip4:185.52.163.2 ip4:20.47.112.49 -all
  • cqtloiqeuo2ajv1l456atre26m
  • u6sh5r0snqf5ao7ti040es4kc0
  • UfGP2eknSb6BVmIitREw
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot