Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo romar industrial company limited

Group: Nightspire

Discovered by ransomware.live: 2025-10-28

Estimated attack date: 2025-10-26

Country: HK

Data exfiltrated: 1 GB

Description:

romar industrial company limited


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • staff thnic.co.th
MX Records
  • mail.netdesign.com.romar.co.th.romar.co.th.
  • mail.romar.co.th.
  • win03-mailpro.zth.netdesignhost.com.romar.co.th.
TXT Records
  • v=spf1 mx ptr ip4:150.95.64.140 ip4:150.95.64.141 ip4:150.95.64.142 ip4:150.95.64.143 mx:win03-mailpro.zth.netdesignhost.com ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.