Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Royal Chemical

Group: Lynx

Discovered by ransomware.live: 2025-05-14

Estimated attack date: 2025-04-11

Country: US

Description:

Royal Chemical Company, Ltd. operates as a chemical blender, and toll and contract manufacturer. It focuses on industrial, institutional, and household cleaning products. The company was founded in 1938 and is based in Twinsburg, Ohio. It has plants in Macedonia, Ohio; Chattanooga, Tennessee; Dallas, Texas; Hayward, California; and East Stroudsburg, Pennsylvania.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
  • hs4da4m638z networksolutionsprivateregistration.com
MX Records
  • mx1-us1.ppe-hosted.com.
  • royalchemical-com.mail.protection.outlook.com.
  • mx2-us1.ppe-hosted.com.
TXT Records
  • apple-domain-verification=IicvDTnpZRvCNDGC
  • v=spf1 ip4:75.117.244.126 include:spf.protection.outlook.com include:_spf-us.ppe-hosted.com include:3775987.spf10.hubspotemail.net include:sendgrid.net include:spf.us.signature365.net ~all
  • MS=ms20197467
  • 5mntlb7krt4n33trm42bceug7g
  • agep8j6fqa45g37uik4jgl4btq
Cloud / SaaS Services Detected
Apple HubSpot Microsoft 365 SendGrid Proofpoint Essentials

Leak Screenshot:

Leak Screenshot