Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Yanfeng

Group: Qilin

Discovered by ransomware.live: 2023-11-27

Estimated attack date: 2023-11-27

Description:

Yanfeng is a leading global automotive supplier, focusing on interior, exterior, seating, cockpit electronics, and passive safety, and is exploring new business actively. Yanfeng has more than 240 locations and approximately 57,000 employees ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 65

Third Party Employee Credentials: 27


External Attack Surface: 14



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • DomainAbuse@service.aliyun.com
MX Records
  • yanfeng-com.mail.protection.outlook.com.
TXT Records
  • code_kingsoft=YWdfQ0hA7PGGdLlWyKanm
  • miro-verification=58826fe6f55cb615549f95e36e55274b05f5c465
  • v=spf1 include:spf.protection.outlook.com include:_netblocks.m.feishu.cn ip4:104.47.0.0/17 include:amazonses.com -all
  • verification-code-site-App_feishu=9mu6rhvnKaUXBANqW3c8
  • onetrust-domain-verification=4d33d770d5df41b5894b1cb81f88891a
  • 564419534-323983426
  • v=verifydomain MS=1058872
  • Foxit-domain-verification=ba28f44da7d4fc3ba23f9095e54b00f5
  • MS=ms38855374
  • c5jdlklguie0hucqnvdn8rg9tm.
  • Foxit-domain-verification=129c276b73811c7a26a5468b65a421a1
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Miro OneTrust