Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.axxoshotels.com

Group: Stormous

Discovered by ransomware.live: 2025-05-21

Estimated attack date: 2025-05-21

Country: DE

Data exfiltrated: 33GB

Description:

IPT – customer data – 2025 bookings – identity cards and more.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse regtons.com
  • webproxy whoisprotection.domains
MX Records
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
TXT Records
  • facebook-domain-verification=znt8bys2i5q8x2utv4oyfitz8lkp1m
  • google-site-verification=p4uOd7oxIAjt7j9Skk5gdiyPmZzppewQ30mwksaagGA
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGdBkq/U2wzVoRPAPZUOUcK400iHwZojrKM680LCHjt5t/kmrmbZ/tBp7Z2KU6T4pseIO9qYU7JYKsjzQ0qJ30W4/QqqZ8q5g8AAyNSWFARDunRmvFu6EfJLnXQudHQ9e3As80GVdXL1WFPxv87Fl/2bxil95V5JLG78Jj1E1ajwIDAQAB
  • v=spf1 include:_spf.amocrmmail.com ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot