Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

dystar.com

dystar.com

Group Settra
Discovered 2026-06-28 19:49 UTC
Est. attack date 2026-06-11
Country SG

Description:

The Complete Digital Archive of DyStar PROLOGUE: WHAT WE HAVE IN OUR HANDS 1.3 terabytes of data — f...

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 33

Third Party Employee Credentials: 13


External Attack Surface: 8


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • mxb-00785502.gslb.pphosted.com. Proofpoint
  • mxa-00785502.gslb.pphosted.com. Proofpoint
TXT Records
  • facebook-domain-verification=95s5czed9vvlf7zc0hxki09q9mfczb
  • calfeucpnsbj82vh6anf37k6ek
  • nl0jls5avl1snap4emi1cmgu6h
  • Jmi2+asE2x+/lPsOUj2aC53khV3/BtgZfmWCZQYeL8Maw3tYPPnqkDMHxPI+elDdy1gE5NsT23rbHGhs1xcRdw==
  • e1aelu43jhff6qbtomivit0sgl
  • twfjv0f64s0vp4s18bymvjd8b0hhtsw0
  • xdmjkkqw7q8y5p6fvq9tm8qg1fr4lsz5
  • v=spf1 ip4:182.50.78.65 ip4:96.43.144.65 ip4:96.43.148.65 ip4:194.69.131.1 ip4:194.69.131.2 ip4:182.23.151.218 ip4:182.23.148.165 include:spf-00785502.pphosted.com include:spf.protection.outlook.com include:_spf.salesforce.com include:emailus.freshservice" ".com ~all
  • _globalsign-domain-verification=I4wbJzv1I8FsfKysWegewYYE9p5hEfHNQUXjnnYYUP
Cloud / SaaS Services Detected
Global Sign Salesforce Proofpoint

Leak Screenshot:

Leak Screenshot