Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Play
Discovered 2025-09-15 19:43 UTC
Est. attack date 2025-09-05
Country US

Description:

United States

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 0


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
  • dguarinorfiingredients.com
  • rbatchelderrfiingredients.com
MX Records
  • Mx1-us1.ppe-hosted.com. Proofpoint
  • Mx2-us1.ppe-hosted.com. Proofpoint
TXT Records
  • google-site-verification=tqUdF_-Ypv64q2hpAX62vOU4LqY6SNbV5ik8LW45ml0
  • v=spf1 include:_spf-us.ppe-hosted.com include:spf.protection.outlook.com include:rfiingredients.com.spf.auto.dnssmarthost.net ~all
  • ppe-e9bac4d906529dbda10cf304c34c60b0fa338628
Cloud / SaaS Services Detected
Proofpoint Essentials

Leak Screenshot:

Leak Screenshot