Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo gmpc.com

Group: Warlock

Discovered by ransomware.live: 2025-09-01

Estimated attack date: 2025-09-01

Description:

No description provided.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse porkbun.com
MX Records
  • spam.k93.com.
  • spam1.k93.com.
TXT Records
  • _tkyrrsa8pwiv0mvjfsn2mv8avb0e7e9
  • v=spf1 ip4:172.254.162.67 ip4:72.26.98.141/32 ip4:52.9.119.135 ip4:3.101.4.150 ip4:24.43.47.0/24 ip4:50.207.102.0/24 ip4:52.41.45.150 include:shops.shopify.com include:spf.protection.outlook.com include:_spf.wpcloud.com include:46322239.spf02.hubspotemai" "l.net -all
  • _7g3yepis3qq0hfemr28t9gw0wxfr0t2
  • Xaew2CZD
  • MS=8B926B18896AC2EF5A6207ADB0D53F45FB1BA69F
  • Rk=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76yojh54Xu3uSbQ3JP0A7k8o8GutRF8zbFUA8n0ZH2y0cIEjMliXY4W4LwPA7m4q0ObmvSjhd63O9d8z1XkUBwIDAQAB
  • ZOOM_verify_6RJSrXAlQOWsGLBuPTeRFg
Cloud / SaaS Services Detected
Shopify Zoom