Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo The Printing House

Group: dunghill

Discovered by ransomware.live: 2025-07-01

Estimated attack date: 2025-07-01

Country: CA


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 2


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse rebel.com
  • tphnet tph.ca
MX Records
  • tph-ca.mail.protection.outlook.com.
TXT Records
  • cisco-ci-domain-verification=174e62a697b60a57052ed140aaa096fd4b7ad815864247b443eb5806615268ee
  • bcn=330400EA-F301-11EC-8B7A-FB2ABF0A2176
  • apple-domain-verification=rB9GBoXI95sFUUaJ
  • jhdi5g6nrgdoeutanhqrpv4jfi
  • ci8o6q6jbmsvuotk2tshf5a7r5
  • google-site-verification=GKSqz1JetQDnS4xRprnrru2xCHVir7NTFEXqznb5ZeU
  • v=spf1 ip4:204.138.138.0/23 ip4:204.138.140.0/24 include:spf.protection.outlook.com include:spf.ca.exclaimer.net include:spf.mandrillapp.com include:mktomail.com include:spf.k-ecommerce.com include:sendgrid.net ~all
  • adobe-idp-site-verification=90484261d35fb7d30c050fca59ac67c22cf04df43e5ca9593b51c028473c2b84
  • MS=ms50558010
  • nph34qi5c2vk10udvmcn5uov3v
  • cisco-ci-domain-verification=d2faafe82d70708e61435292e7cf7fd4ef6c0b19fd18e21da618d1fc2ae9196
  • WMSyviEkddPL+58cJVdyd2sj3VRUQNcJwcIkHDwXJ41TGGZKLHKiW3xsel7/uh7wCiz1I8bHQj8ojHZt36LVKg==
  • ZOOM_verify_QeiJlMI2gFsAwvs6KMDtu9
  • google-site-verification=sXTdZ7pqx6gjqVzrtAREnv8gV6aoYmuQHWzvNv0-FQM
  • fastly-domain-delegation-2EjgQNSA87LXcDSHDxgT-305464-2020-30-10
  • d365mktkey=qEksGsA35pf5LQ6zaCIlxxOnI1YNlaaKzOER2wlyLK8x
  • google-site-verification=ef74vF1GEpLdAMkiyBxOHciDcG1dsu2k1h58GVbADwk
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Marketo Mandrill Cisco SendGrid Zoom

Leak Screenshot:

Leak Screenshot