Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.shautoparts.com

Group: qilin

Discovered by ransomware.live: 2025-05-30

Estimated attack date: 2025-05-30

Country: CN

Description:

At SH Auto Parts, we leverage cutting-edge computerized and robotic technologies to deliver precision-engineered auto components. Our fully automated smart factory ensures the highest levels of quality and safety throughout the manufacturing ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 0


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse tucows.com
MX Records
  • shautoparts-com.mail.protection.outlook.com.
TXT Records
  • leqqdd71hjufjmj15v8j068ubm
  • v=spf1 ip4:211.72.75.65 ip4:211.72.75.95 ip4:61.221.81.248 ip4:60.249.80.134 ip4:211.72.75.6 ip4:106.107.242.136 include:spf.protection.outlook.com ~all
  • MS=21.12.2022
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot