Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Pioneer Ocean Freight Co., Ltd.

Group: Nightspire

Discovered by ransomware.live: 2025-12-04

Estimated attack date: 2025-11-24

Country: HK

Data exfiltrated: 5 GB

Description:

Pioneer Ocean Freight Co., Ltd.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 6


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • staff@thnic.co.th
MX Records
  • antispamawn.thaicloudsolutions.com.
TXT Records
  • MS=76A99F050F220785FBA5059A88C8AECE15CCCB8E
  • MS=F23033ED9B97DCFE0502D3BB2DADCFE2240526B0
  • v=spf1 a a:mail.pioneergroup.in.th include:_awn.thaicloudsolutions.com include:spf-1.csloxinfo.com ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.