Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Pellenc

Group: Coinbasecartel

Discovered by ransomware.live: 2026-01-31

Estimated attack date: 2026-01-31

Country: FR

Description:

[AI generated] Pellenc is a global manufacturer and distributor of professional grade tools and machinery primarily for use in the horticulture, viticulture, forestry, and municipal sectors. Its products include vine harvesters, battery-powered handheld tools, olive and fruit harvesters, and ground care equipment. Headquartered in France, Pellenc was founded in 1973 and has innovation at its heart, with over 1,000 patents registered.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 28

Third Party Employee Credentials: 3


External Attack Surface: 14


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain-abuse@internetx.com
MX Records
  • mxb-0087c001.gslb.pphosted.com.
  • mxa-0087c001.gslb.pphosted.com.
TXT Records
  • wrike-verification=MzMxMjM3NTpiZTYyZDg5YzFiMWM5NWY1YjY3NWJhZjNhNzI5MWYxMjJhZDk5MDdkNTc2YjZmYmQ2NzI3NTBjMTMwMDQ3Mzg1
  • adobe-idp-site-verification=4a8a61c3894a532e56ac67e61d04fec63a0efface78cbbae68462fcc9be897c2
  • v=spf1 ip4:84.14.43.217 ip4:46.163.89.0/24 ip4:31.15.30.123 ip4:31.170.12.17 include:_spf.odoo.com include:spf.mailjet.com include:spf.strold.io include:spf.protection.outlook.com include:spf.voxpay.fr include:spf-0087c001.pphosted.com -all
  • infor-cloudsuite-domain-verification=H5LM8TTB2VEXMNNJXLKNFMVDZLXQ6FKNWL9HMACQ4NJU5FB9LE5NTUF3XLE65QZU
  • globalsign-domain-verification=OPJgUdvsaG508RAUemzATPGXlgk3wWLX4fbcPp_vpu
  • google-site-verification=t3zvdVfGc5Y7Cg1Lc1fyriBzsDbs0VK53SPFg5PH8g8
  • atlassian-sending-domain-verification=03a434d8-8116-4279-89fb-f0adfeb53798
  • dBv8R0pAhgzxdscpOOXWz8M97TeJSziVT3IeBTt1B93QKKB2TvwI0MVR23xC4ft6Q3rgZAAJoW+4CPWqWu5u3Q==
  • globalsign-domain-verification=AdR37bJQJWAE8hhgtNplAoFe1-ehSRT8fWGUKVPjW-
  • ZA=iUxVmw4Yy4YUzYefUww5gA==
  • atlassian-domain-verification=iWaPTVBvIQzkF5PIP3d3SKDz8H1tLaMmcq8fJNrL7y7v2TOR9e/XeBMKZJoZ5jR6
  • globalsign-domain-verification=Sic9vp7nmQ8Ue8kAcnksVpHTq9NvBod1IobhYfLziS
Cloud / SaaS Services Detected
Adobe Atlassian Mailjet Proofpoint

Leak Screenshot:

Leak Screenshot