Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.liderit.es

Group: ransomhub

Discovered by ransomware.live: 2024-06-17

Estimated attack date: 2024-06-17

Country: ES


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 2

Third Party Employee Credentials: 5


External Attack Surface: 3



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mx-01-eu-west-1.prod.hydra.sophos.com.
  • mx-02-eu-west-1.prod.hydra.sophos.com.
TXT Records
  • v=spf1 include:_spf_euwest1.prod.hydra.sophos.com include:_spf.serviciodecorreo.es include:spf.protection.outlook.com include:spf.relay.liderit.es ip4:85.152.52.180 ip4:80.24.149.250 ip4:199.255.192.0/22 ip4:199.127.232.0/22 ip4:54.240.0.0/18 ip4:69.169.2" "24.0/20 ip4:23.249.208.0/20 ip4:23.251.224.0/19 ip4:76.223.176.0/20 ip4:54.240.64.0/19 -all
  • sophos-domain-verification=78ac288179e94709bf4fffb77aefeedee62222748c0b2023eea26bc705f990c3
  • sophos-domain-verification=d2e0677bea6f6c287966c01cad2d043b99174105
  • MS=ms83642790
  • google-site-verification=YqtQHuauP4SjM5_mtCC5_IWiWnzQ7kN6Ot3THn0PYX8
  • 201904090721063dhlvvfczkk4gxfc04mmn581qbsd5hupbiv2d6ipcpaot4ghh6
  • 202003251426072blfsfqaaacflagn3h3sfuqkmj9mp32daj05ge1rfc2fq9v62r
Cloud / SaaS Services Detected
Microsoft 365 Sophos

Leak Screenshot:

Leak Screenshot