Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Qilin
Discovered 2023-11-27
Est. attack date 2023-11-27

Description:

Yanfeng is a leading global automotive supplier, focusing on interior, exterior, seating, cockpit electronics, and passive safety, and is exploring new business actively. Yanfeng has more than 240 locations and approximately 57,000 employees ...

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 65

Third Party Employee Credentials: 27


External Attack Surface: 14


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • DomainAbuse@service.aliyun.com
MX Records
  • yanfeng-com.mail.protection.outlook.com.
TXT Records
  • onetrust-domain-verification=4d33d770d5df41b5894b1cb81f88891a
  • 564419534-323983426
  • v=verifydomain MS=1058872
  • Foxit-domain-verification=ba28f44da7d4fc3ba23f9095e54b00f5
  • MS=ms38855374
  • c5jdlklguie0hucqnvdn8rg9tm.
  • Foxit-domain-verification=129c276b73811c7a26a5468b65a421a1
  • code_kingsoft=YWdfQ0hA7PGGdLlWyKanm
  • miro-verification=58826fe6f55cb615549f95e36e55274b05f5c465
  • v=spf1 include:spf.protection.outlook.com include:_netblocks.m.feishu.cn ip4:104.47.0.0/17 include:amazonses.com -all
  • verification-code-site-App_feishu=9mu6rhvnKaUXBANqW3c8
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Miro OneTrust