Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-07-29 15:09 UTC
Est. attack date 2025-07-23
Country ES

Description:

DRUNI offers a wide range of online beauty products including per fumes, makeup, and cosmetics at competitive prices. We are ready to upload over 40 GB of corporate documents. Employe e files like DNI and so on, detailed financials, project data, cu stomers information, contracts and agreements with L'oreal, Dior, Channel and others big names.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 10387

Third Party Employee Credentials: 3


External Attack Surface: 101


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • publi1.druni.es.
  • publi2.druni.es.
  • publi3.druni.es.
  • publi4.druni.es.
  • publi5.druni.es.
  • publi7.druni.es.
  • druni-es.mail.protection.outlook.com. Microsoft 365
  • publi.druni.es.
TXT Records
  • apple-domain-verification=DAwE1nOsGOzvWug9
  • google-site-verification=wRiI5EKt50hmruPQP3I9qFrW9nVIlgC4cuGW5pwVsH0
  • v=spf1 mx ip4:95.60.240.64/28 ip4:23.249.220.83 include:spf.protection.outlook.com include:_spf.jupiter.salesmanago.pl include:_spf.salesforce.com ~all
Cloud / SaaS Services Detected
Apple Salesforce