Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Killsec
Discovered 2025-09-22 09:25 UTC
Est. attack date 2025-09-22
Country GB

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 3

Third Party Employee Credentials: 8


External Attack Surface: 4


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • b32bd2f2e45cd8d1b037dc9cdd225a60a03d48f54140da5d78c85b1ad72fbff8fractalite.com.whoisproxy.org
  • b32bd2f2e45cd8d1b037dc9cdd225a60c312cd9c2f745987b5d4b4e1b1155faefractalite.com.whoisproxy.org
  • b32bd2f2e45cd8d1b037dc9cdd225a60229b8eef6120b8705f4f79d2b29279e6fractalite.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • b32bd2f2e45cd8d1b037dc9cdd225a6096d8bb9c0db0b04ef65137c295408b24fractalite.com.whoisproxy.org
MX Records
  • alt1.aspmx.l.google.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
  • aspmx2.googlemail.com. Google Workspace
  • aspmx3.googlemail.com. Google Workspace
  • aspmx4.googlemail.com. Google Workspace
  • aspmx5.googlemail.com. Google Workspace
  • aspmx.l.google.com. Google Workspace
TXT Records
  • brevo-code:02afa3bb6fe6137eb6973dc38d7d5c8e
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot