Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Discovered 2026-06-11 12:22 UTC
Est. attack date 2026-06-11
Country RO

Description:

Unauthorized access has been gained to the company's confidential files, including client data, proprietary R&D, and financial documentation.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 0


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • fineconsulting-com01b.mail.protection.outlook.com. Microsoft 365
TXT Records
  • sophos-domain-verification=ab576fffa391013c2919f92b495a26f7a21715932c8e02c895f8fa7af0f0d1a2
  • ms37778408
  • e1ciGfTAVC4USb6LkLIrvq9ol0fK8ibBZ1dZuK8mu3KisbwL+v5EAdIYDWy3AhqzxB+buc6Rj8UWQ5kXhc35GQ==
  • v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCrLHiExVd55zd/IQ/J/mRwSRMAocV/hMB3jXwaHH36d9NaVynQFYV8NaWi69c1veUtRzGt7yAioXqLj7Z4TeEUoOLgrKsn8YnckGs9i3B3tVFB+Ch/4mPhXWiNfNdynHWBcPcbJ8kjEQ2U8y78dHZj1YeRXXVvWob2OaKynO8/lQIDAQAB;
  • sophos-domain-verification=17279885feb12b1dd5f5d107daa89bec8501f85d
  • Cu23dExeeiOqEm5kUNUpjYtWECT5xzqOGAxC4qNktJqYt6k3JxuztJnqgvkJxQWe5+8gvoQ91zmNxIg3TWEgUg==
  • v=spf1 ip4:84.247.87.174 include:servers.mcsv.net include:spf.protection.outlook.com include:spf.mandrillapp.com ~all
  • 9dIQfsIzCIFpnpul499kxO12LoA35PFDilDs0PqnEUOdp2ci9pzNED/kv1o3Okw9PIC5yreE8iYywdU5zo9pyw==
  • google-site-verification=R1cWXjGMi5q9UEdMctDWX9JDsIAXXaoVqfTuwgYMjkk
  • MS=ms37778408
Cloud / SaaS Services Detected
Mailchimp Microsoft 365 Mandrill Sophos

Leak Screenshot:

Leak Screenshot