Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

lantro.com

lantro.com

Group Devman
Discovered 2025-05-31 17:16 UTC
Est. attack date 2025-05-31
Country JP

Description:

1.1 million USD

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 12


External Attack Surface: 3


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafetysupport.aws.com
  • 3df08459a8b36de11158abbd9b7da6533baccc55f0285fa2e8056caa798f7acflantro.com.whoisproxy.org
  • 3df08459a8b36de11158abbd9b7da653dba94508f512a60dc91fc71b53da2bb8lantro.com.whoisproxy.org
  • 3df08459a8b36de11158abbd9b7da65385a7561b31ef4dbbf8e6f3a450f6a199lantro.com.whoisproxy.org
  • 3df08459a8b36de11158abbd9b7da65374dea771a5e7999fb22104184d293d62lantro.com.whoisproxy.org
MX Records
  • lantro-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:amazonses.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail