Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

https://www.sohnen.com

sohnen.com

Group Royal
Discovered 2022-11-07 21:13 UTC
Est. attack date 2022-11-07

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 0

Third Party Employee Credentials: 3


External Attack Surface: 0


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • sohnen-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 ip4:201.174.174.34 ip4:189.202.144.202 ip4:201.174.174.50 ip4:189.202.144.154 ip4:201.174.174.42 ip4:189.202.144.146 ip4:187.249.64.162 ip4:201.148.16.154 ip4:98.153.197.250 ip4:12.187.203.58 ip4:67.220.161.210 ip4:32.143.41.14 ip4:23.83.210.17 inc" "lude:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.