Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

rmutto.ac.th

rmutto.ac.th

Discovered 2023-12-21 16:16 UTC
Est. attack date 2023-12-21
Country TH

Description:

Rajamangala University of Technology Tawan-Ok It is a university of science and technology. Established in accordance with the Rajamangala University of Technology Act 2005, which has been announced in the Royal Gazette and has been effective since January 19, 2005. In this Act, it has been specified to group campuses under the Rajamangala Institute of Technology. There are 4 campuses and 1 faculty according to Section 65(3), namely Chakrabongse Bhuvanarth Campus. Uthen Thawai Campus Bangphon Campus

Infostealer activity detected by HudsonRock

Compromised Employees: 57

Compromised Users: 1142

Third Party Employee Credentials: 522


External Attack Surface: 122


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • staffthnic.co.th
MX Records
  • ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT3.ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT1.ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT4.ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT2.ASPMX.L.GOOGLE.COM. Google Workspace
TXT Records
  • _globalsign-domain-verification=jVg2Rd0_e9gaeB9eDbmM08NwneP1rSiBdRgbzZTVKD
  • v=spf1 include:_spf.google.com include:spf.protection.outlook.com ~all
  • MS=DE29AB0BD37974BFD9F802157140447EAA78F057
  • Foxit-domain-verification=148bfc7ce2d896afb623476fd0837360
  • ca3-f1ef3724281f4a9495572c44b242239c
Cloud / SaaS Services Detected
Global Sign

Leak Screenshot:

Leak Screenshot