Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo dalton.com

Group: Qilin

Discovered by ransomware.live: 2025-10-16

Estimated attack date: 2025-10-16

Description:

Founded in 1986, Dalton Pharma Services is a contract pharmaceutical company providing a full range of development and manufacturing services to pharmaceutical and research companies worldwide. 1.The document is a bank statement from MUFG Ba ...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse rebel.com
MX Records
  • dalton-com.mail.protection.outlook.com.
TXT Records
  • MS=81EB59BEFC077617E7A2CBC59FE70A0F87AAF434
  • v=spf1 ip4:207.35.151.203 ip4:209.162.253.41 ip4:52.237.25.60 ip4:142.115.29.45 ip4:142.115.29.46 include:aspmx.pardot.com include:spf.protection.outlook.com include:spf.ess.ca.barracudanetworks.com include:_spf.salesforce.com ~all
  • gdr2mi0jrhsg975n23n2o8tku3
  • v=DMARC1; p=none; fo=1; rua=mailto:rua+dalton.com@dmarc.barracudanetworks.com; ruf=mailto:ruf+dalton.com@dmarc.barracudanetworks.com
  • pardot_349881_*=8f42d920186bf486ec88169d96147305cdfa4130b591318edd51e7bb74960a32"
  • MiOFypBq
Cloud / SaaS Services Detected
Salesforce

Leak Screenshot:

Leak Screenshot