Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo sipecom.com

Group: warlock

Discovered by ransomware.live: 2025-08-17

Estimated attack date: 2025-08-06

Country: EC

Description:

all data


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 4

Third Party Employee Credentials: 11


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse enom.com
  • pkvcygbfr whoisprivacyprotect.com
MX Records
  • mx3-hosting.jellyfish.systems.
  • sipecom-com.mail.protection.outlook.com.
  • mx1-hosting.jellyfish.systems.
  • mx2-hosting.jellyfish.systems.
TXT Records
  • google-site-verification=7sYTEsctScTQ7LZBTnniIoqxVGH0FtQl5YyLl_h8dWQ
  • Sendinblue-code:48c8823fb29b770b50377e2722a861d7
  • google-site-verification=tW00j31CM13WsteF8JroQqjr_UCn0GaAAuj9aDBbumo
  • v=spf1 +mx +ip4:162.213.251.191 +include:spf.web-hosting.com +ip4:162.213.251.177 +include:spf.protection.outlook.com +ip4:96.31.34.237 +ip4:64.79.170.140 +ip4:96.31.32.198/29 +ip4:64.79.170.98/29 +include:email.milldesk.com +include:turbo-smtp.com +inclu" "de:_spf.embluemail.com +include:spf.sendinblue.com ~all
  • MS555577
  • brevo-code:70c3e011c0404af288d948e7b5704e98
  • mscid=XKlz/fUxug3GcuNFZ3OH720ji7OdJAhC7z5FTQIO0EM7a85MRQAY3jwvINOJj+JiLQfsUtoiRSMxA689ENHfwA==
Cloud / SaaS Services Detected
Sendinblue