Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

scania.pl

scania.pl

Group: Ransomhub

Discovered by ransomware.live: 2024-12-16

Estimated attack date: 2024-12-16

Country: PL

Description:

[AI generated] Scania.pl is the Polish branch of Scania AB, a leading global manufacturer of heavy trucks, buses, and industrial engines. Known for its commitment to sustainability and innovation, Scania.pl offers a range of transport solutions tailored to customer needs, emphasizing fuel efficiency and reduced emissions. The company also provides maintenance, repair services, and financial solutions to support its vehicles.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 35

Third Party Employee Credentials: 0


External Attack Surface: 9



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • scania-pl.mail.protection.outlook.com.
TXT Records
  • ee7807da8d74e8866c572fd566e94df61ee909d2b5211f5da6a3b5f6e106cbc1
  • MS=ms94578534
  • v=spf1 ip4:91.237.196.4 ip4:91.219.184.41 ip4:91.219.184.55 ip4:91.219.184.61 ip4:91.239.185.20 ip4:178.16.117.16 include:_spf.redlink.pl include:ecmservices.infinite.pl include:spf.protection.outlook.com include:spf.symprex.net include:_spf.emaillabs.net" ".pl ~all
  • 123b70afa5c69481313a1595827fff084692cf1d8f849f527ff3e0b34298d07
  • CWKJuvBoKwHXviHrooZzacz9e8I3BC81Dyh58db79MmVq3MmEV/8zdQH3dGcytcs6GSpnzY0w5bq1cCu+rZlUw==
  • ms-domain-verification=644c2605-51cf-44ee-9c39-030c8e590885
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot