Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Pathstone.com

Group: Shinyhunters

Discovered by ransomware.live: 2026-03-06

Estimated attack date: 2026-03-06

Country: US

Description:

Salesforce records were compromised and other internal corporate data have been compromised. The company failed to reach an agreement with us despite all the chances and offers we made. They don't care about their clients nor investors. | Size: 15GB (compressed) | Updated: 06 Mar 2026 | SHA256: 6377f58fe8229bc376bbcf6acc32d00cdfb0ac415b8660106f29ca14fa6d0561



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abuse@cloudflare.com
MX Records
  • pathstone-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.mandrillapp.com include:servers.mcsv.net include:_spf.alchemer.com include:spf.protection.outlook.com ip4:207.99.50.36 ip4:38.27.105.14 ip4:104.236.32.82 include:spf.us.exclaimer.net include:_spf.salesforce.com ip4:3.214.204" ".181 include:clientspf.backstopsolutions.com include:spf.zohomail360.com" " ip4:72.94.215.53 ip4:72.94.215.50 ip4:12.111.197.5 ip4:208.81.212.0/22 ~all
  • 00d400000007twy=1tbvu0000000085
  • 0ed1fe018a8a4e13a3e06e42f2afdf7245daf7a821
  • MS=ms35214266
  • MS=ms74653051
  • ZOOM_verify_5b0IiEPCWGzykTp1j5F4ri
  • apple-domain-verification=8f8sGFExQzV2qEZ8
  • box-domain-verification=868ce55e2852716ee42941480efe01530c119351d08d12c4d9298beba35fcb83
  • d2bc87b2-0c6f-4a22-aa3f-c118f7da0ca5
  • docusign=d0c6abe7-3643-43f4-8408-88b16ad881a1
  • google-site-verification=PJaaeCVC9hGSiPEkO-AIcsvt3acuyqItqC_XacjZiA0
  • mt-27094216
  • prgz9lmhhxf6yv52vljwndmtb32wmn80
  • rippling-domain-verification=ee286747722901bf
Cloud / SaaS Services Detected
Apple Mailchimp Microsoft 365 Salesforce Box Mandrill Rippling DocuSign Zoom