Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Royal Chemical

Group: lynx

Discovered by ransomware.live: 2025-05-14

Estimated attack date: 2025-05-11

Country: US

Description:

Royal Chemical Company, Ltd. operates as a chemical blender, and toll and contract manufacturer. It focuses on industrial, institutional, and household cleaning products. The company was founded in 1938 and is based in Twinsburg, Ohio. It has plants in Macedonia, Ohio; Chattanooga, Tennessee; Dallas, Texas; Hayward, California; and East Stroudsburg, Pennsylvania.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • royalchemical-com.mail.protection.outlook.com.
  • mx3.mtaroutes.com.
  • mx2.mtaroutes.com.
  • mx4.mtaroutes.com.
  • mx1.mtaroutes.com.
TXT Records
  • agep8j6fqa45g37uik4jgl4btq
  • v=spf1 ip4:75.117.244.126 include:spf.protection.outlook.com include:spf.mtaroutes.com include:3775987.spf10.hubspotemail.net include:sendgrid.net include:spf.us.signature365.net ~all
  • apple-domain-verification=IicvDTnpZRvCNDGC
  • MS=ms20197467
  • 5mntlb7krt4n33trm42bceug7g
Cloud / SaaS Services Detected
Apple HubSpot Microsoft 365 SendGrid

Leak Screenshot:

Leak Screenshot