Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo colt.net

Group: warlock

Discovered by ransomware.live: 2025-08-17

Estimated attack date: 2025-08-17

Country: GB

Description:

1 million documents,The full set of files needs to be purchased separately.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 81

Compromised Users: 362

Third Party Employee Credentials: 71


External Attack Surface: 120


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain-abuse internetx.com
  • eudnsmaster colt.net
  • dns-requests colt.net
MX Records
  • colt-net.mail.protection.outlook.com.
TXT Records
  • MS=ms94562898
  • ms-domain-verification=2ee03593-6dfb-442f-9f40-d93d8165b0be
  • QuoVadis=7b6f99b2-6590-4098-97b6-a5f188fcffd3
  • docusign=08e8f91a-432a-4db4-a18a-51cffc2f6f60
  • <13.06.2025>
  • apple-domain-verification=Gtrsq6aXkfWN0x1p
  • v=spf1 include:_spf.colt.net include:_spfasia.colt.net include:spf.protection.outlook.com include:spf.mail-exchange.services ~all
  • zscaler-verification-74239026-8212025-7GNw9T
  • _vk0d1w2jnk3syzb04su4htqt1qjomkc
  • google-site-verification=UshzASKCpMsKUZ27MCk43NUJNldZ54sNxujmvdbkJvk
Cloud / SaaS Services Detected
Apple Microsoft 365 DocuSign