Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo eni.com&mellitahog.ly

Group: Ransomhub

Discovered by ransomware.live: 2024-07-13

Estimated attack date: 2024-03-29

Country: IT


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 196

Compromised Users: 8

Third Party Employee Credentials: 156


External Attack Surface: 167



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse register.it
MX Records
  • eni-com.mail.protection.outlook.com.
TXT Records
  • google-site-verification=ooOJOB0jhspBaE6591xm3e2ItGWOYf6f2C5a3f5HkzU
  • 8vbVf3fb-IlIcpZcC4oDKm9gK4xclUR8TERRcpRiZXE
  • 0K1k16G75w58fxaMDpf9i+KBx221GIdSAp/NsRW4PVc=
  • 87y29q4xbv425bgyx1fn70cm175xwchy
  • globalsign-domain-verification=6CBE1F6FC408E1AFFDC318178597486A
  • globalsign-domain-verification=4819f8c3c78d6bf65476779ac5cbccc7
  • Kl/JIvuc9Wce07DUJc98tXAofquEdZteIkI9OebQPfo=
  • onetrust-domain-verification=7e98852d735a447982b648a4adc44f6f
  • y1rdx6kxfcyq4fhbpbg2b66ms9h00xt0
  • ms-domain-verification=3004abed-516b-4bff-9503-f6c0fd708054
  • ms-domain-verification=23079085-1fe6-4857-8e5e-afa7b63f39cc
  • google-site-verification=8vbVf3fb-IlIcpZcC4oDKm9gK4xclUR8TERRcpRiZXE
  • v=spf1 include:spf.eni.com include:spf.enirgy.it include:spf.protection.outlook.com -all
  • _j5nfluh532f3bjbgpnozynbz6tvcb9w
  • adobe-idp-site-verification=896234325d5356b8c0f504f685d5635164c2177280cfbeac4bcab1ae831b479f
  • SzjjdNxqk0TubwubGMMUoHn2nL9e5GIjWM2Jxb6aohP9symsQJFpmXzStCM6lX6x
  • globalsign-domain-verification=DAF2F3475EC260E02A66FB387E6E7901
  • 178f1335-7ec7-48b5-8d1b-a456b24591ac
  • globalsign-domain-verification=79249136B02E36298F5671B56343E757
  • ms-domain-verification=7b340ba3-3635-4f4d-8845-389a369c2d91
  • jSA2/TvGVdsEZsIRXhVjdYYxtW0IBJq+jRrPH4IjOI1lmfEEOkjveuFKe2OWMUazE+YCRJ+taRiD8LOiBpIewA==
  • globalsign-domain-verification=8D283AC7516379A183F7FEF135024986
  • MS=ms33691999
  • ms-domain-verification=7aa9ac27-db4b-464e-a140-a8c5d2c10797
  • xsjcd1kmbcxn5x2qzjyyz72z74svx5sr
  • apple-domain-verification=3vvAClEsGzFzxySJ
  • SPrIC/rvYbbDeh3LLYZ03ae6HlAx1BE8L62vKMgfQkE=
  • ms-domain-verification=76fcfc94-9b8b-4e27-9ec6-e3cfe23bf8ef
  • s4pzw98tqs0lfp91svv79vj99q84qsjz
  • mongodb-site-verification=Pf3sT0XQAHwJSWQrMB2idWUrNFGX4rJZ
  • _4sidjex428n9xo3dfcup5lkvigdqtpr
  • hgzxl7mycl25fsrcx48xy94wpg05j1zd
  • 9pbwtslcsbxgjsbbqvqg8qq55f3vjvh8
  • ms-domain-verification=5a01d4dc-b09b-4d82-ba5e-c691fd1f4a41
  • ciscocidomainverification=619913516fd3784ed0f9aae27b30239f7e34aa19b1a47e241146d48bf85ddc51
  • zbzrsx4mdxxft2t3bb0x50n242vr1f14
  • 5e101c23063f934ca4e8513ec5867c33a916d9cab9f4185d6afa457062adc9ca
  • QsYeoCAVz4Cp3x0LV+9EzspxTdHI5DMt3f+uBU53+GdKIbVyjfMKHbqXWr14PMDsbP/vPO47U2TUeyP7iLhRYQ==
  • ms-domain-verification=6ff9aa2e-2ca8-49c6-8674-d54fc8e0d57f
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 OneTrust

Leak Screenshot:

Leak Screenshot