Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

esprinet.com

esprinet.com

Group: Alp-001

Discovered by ransomware.live: 2026-03-25

Estimated attack date: 2026-03-25

Country: IT

Data exfiltrated: 1.2TB Description: Esprinet (Italian Stock Exchange: PRT) is engaged in the wholesale distribution of IT and consumer electronics in Italy and Spain, with ~40.000 resellers customers served and 600 brands supplied.

Ransom:

Description:

Country: italy Revenue: $4.5 billion Storage: 1.2TB Description: Esprinet (Italian Stock Exchange: PRT) is engaged in the wholesale distribution of IT and consumer electronics in Italy and Spain, with ~40.000 resellers customers served and 600 brands supplied. Deadline: 2026-04-04 18:12:21

Infostealer activity detected by HudsonRock

Compromised Employees: 15

Compromised Users: 3938

Third Party Employee Credentials: 11


External Attack Surface: 110


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@tucows.com
MX Records
  • esprinet-com.mail.protection.outlook.com.
TXT Records
  • FBfa8SQPUh3Djxuu4jBOKz0EAncPeAE3agCuDunbMNAc/qoi+/2ugRPCJpYuJk+IGeGOKAo88UeVmTjMi3iv/A==
  • JEBSp5gXmCHdpr1Z0C/qDk6pQE9c8JZV+2Q2EZT9jcqD3IwVHMF3SlRGUJpvJdKFv1d8eDrYUG4JGvBh4ibR6g==
  • Foxit-domain-verification=a0c5883c9d7095ce5e855d9283486f0e
  • openai-domain-verification=dv-AJNU7YtyDcAcoHeszZNUwl4W
  • d365mktkey=nw9f6xRC2lcKde2fyDFz0L04ecgYoA03V7N8GEjEwRIx
  • 8TQq7Haj7PU65YUpOfUlZxX6JTxl+NnyksaEXPIn/KpenAXAsSwoMBsmD+SKArQaVPkNfzwdRjonvRPIIdBQjQ==
  • facebook-domain-verification=zmazb6w09ih15clv5rco4p32ruhylb
  • google-site-verification=q7KPg9uDKa3j7Wqzvbmiqi4nGcnhZmY5BPLUfGTZrio
  • MS=ms67146213
  • smartfense-domain-verification=tWG00fUz_7vxE0zQmYc-6YFJWCssOuc_uKxZpEl4TwXcTSae
  • teamviewer-sso-verification=ec33bda906c9413498a87e61127fb368
  • google-site-verification=dnC8Ki-bRZ7eu2LirrBt_X5S26rsbnKpKyr_lpdUuZY
  • v=spf1 include:spf.esprinet.com exp=explain.spf.esprinet.com -all
  • figma-domain-verification=cb5372e5141538df6976d2829da851cabfe2dec4a80af07857423df882d097b6-1726558955
Cloud / SaaS Services Detected
Microsoft 365 Teamviewer

Leak Screenshot:

Leak Screenshot