Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo THX Transport

Group: arcusmedia

Discovered by ransomware.live: 2025-03-19

Estimated attack date: 2025-03-18

Description:

Days06Hours22222222Minutes44448888Seconds22224545 www.thxtransport.com THX Transport LLC is a company that operates in the Transportation ind…


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 1


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain-abuse dreamhost.com
  • sm3ny885tknxsnf proxy.dreamhost.com
  • hpgscusjucvydmf proxy.dreamhost.com
  • 9pes3u79xrhsh3q proxy.dreamhost.com
MX Records
  • mx1.mailchannels.net.
  • mx2.mailchannels.net.
TXT Records
  • google-site-verification=ZaEwIcgimncYnc17dpfSvnG7hueW7UFXoqrJC7Pz-_k
  • MS=ms63126521
  • v=spf1 mx include:netblocks.dreamhost.com include:relay.mailchannels.net -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot