Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

lantro.com

lantro.com

Group Devman
Discovered 2025-05-31 17:16 UTC
Est. attack date 2025-05-31
Country JP

Description:

1.1 million USD

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 12


External Attack Surface: 3


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ef719becb2ef1c79bccc6c414d0be6dd220a777b632479a0b994ad17dae1163dlantro.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • ef719becb2ef1c79bccc6c414d0be6dde6b4ad4931f295a218479e290edf5214lantro.com.whoisproxy.org
  • ef719becb2ef1c79bccc6c414d0be6dd04804b1250cfef93b6f946bb76cb8740lantro.com.whoisproxy.org
  • ef719becb2ef1c79bccc6c414d0be6dd77530d0657f1a5b8c90b28c6981da7f3lantro.com.whoisproxy.org
MX Records
  • lantro-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:amazonses.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail