Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Unified Assessment Platform ExamRoom.AI

Group: Crypto24

Discovered by ransomware.live: 2025-12-23

Estimated attack date: 2025-12-23

Country: US

Description:

***


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 19

Compromised Users: 647

Third Party Employee Credentials: 10


External Attack Surface: 52


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse 101domain.com
  • 1cb470.RaEJpNPBDDP digitalprivacy.co
MX Records
  • examroom-ai.mail.protection.outlook.com.
TXT Records
  • google-site-verification=NQ14N6hCUIofbAEf4f8ATZNQLRTDcO4hAh4kU8n2TLY
  • google-site-verification=cPh8PXqlLo_-xb2wprE5L2RBZalCU1I7LqiblvsljII
  • dbk9y3s34httwr25ks3db7f5ljsrglzq
  • google-site-verification=rbLAbBY_al5LXBHUPPYfLSawRhwcjSbcustIB-9Z9d8
  • google-site-verification=JFmNrLFj8qTs3qG-39zpFWInaWWoa1I4Ktf8oZZuTUE
  • google-site-verification=84Z6CTSNBhb7SwWUojQXQwO3lWiRez8LMu6g1jZD1FI
  • amazonses:MwSfk+x5zSyeaxAXo9Yng/U6hAlnNYK44sFWOqIuVtM=
  • google-site-verification=-Ofjy9nAxwB0RDws6TYCDHJY62H8rQ9nyQWxw2enYco
  • MS=ms51671200
  • v=spf1 include:spf.protection.outlook.com -all
  • google-site-verification=CK1SgMByiU53y8fnCDLEsMXfmU3KihsUx4rocEyCobM
  • p56tsmp9dvsl1w3qvmysh5c3swqd610y
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365