Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Lynx
Discovered 2025-07-22 00:12 UTC
Est. attack date 2025-06-20
Country US

Description:

Since 1999, iBUYPOWER has embodied its core beliefs of Perseverance, Unity, Strength, and Ambition, to deliver on its promise to build the best gaming systems for the most discerning gamers. Even in a time when PCs were not as ubiquitous as they are today, we fueled the passion for gaming by giving our customers the highest quality in custom built computers. Our systems have since become the backbone for professional gamers, game developers, LAN centers, major esports tournaments, collegiate esports, and everyday consumers. iBUYPOWER has worked intimately with brands such as Intel, NVIDIA, AMD, Microsoft, WD, ASUS, Bethesda, MLG and many more. Superior performance, reliability, cutting edge technology and timely production make iBUYPOWER the authority in PC gaming.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 7689

Third Party Employee Credentials: 1


External Attack Surface: 105


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • ibuypower-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=giWfP8Qe7ZKkGILDbrLhzLBdZ3FuLwIlg6YmrpSXUkI
  • google-site-verification=jOb1DBfeMP3ZHB2ovJgNvlhiMTDks1dDQ_rozMNbBmI
  • google-site-verification=wDpaeastpCCzpZqIjVsMvREtakVXiLzJw7561T-6Jq8
  • openai-domain-verification=dv-GYVRpIqYz7qvD3ZoafforMec
  • v=spf1 include:spf.protection.outlook.com include:mailgun.org -all
  • MS=ms61644942
  • amazonses:h5VhJKm2pAQ5Y6ZovsL6RanJ5xZn8ICZNeOQOuq279A=
  • atlassian-sending-domain-verification=4b3607da-d69f-4496-8be9-f1608c53c7f7
  • google-site-verification=4W8t268mwEX7FOvnODss-qQgSip5okeucYmh95OfXzA
  • google-site-verification=CScO9N0VKN_olBJ_59dgtpf_6j3LCjmBMwMETVic5_M
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 OpenIA Mailgun

Leak Screenshot:

Leak Screenshot