Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Lupin Limited

lupin.com

Group Killsec
Discovered 2025-03-28 07:25 UTC
Est. attack date 2025-03-28
Country IN

Infostealer activity detected by HudsonRock

Compromised Employees: 63

Compromised Users: 162

Third Party Employee Credentials: 144


External Attack Surface: 141


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • winniesaldanhalupinpharma.com
  • abuse-contactpublicdomainregistry.com
  • bhaskargangulalupin.com
MX Records
  • lupin-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • 80ttclh0niqkduqc5e88ql9k5q
  • b3bgjisl01b594r2odm9nb0la7
  • n9p2ed2shvmiv7choqr8f0ocjd
  • mgal7tknko2d6u6vii8acubm3a
  • t2j2eohvandd6qllfjj5sla7jn
  • nm79qau04ntrbk3l3uqj0b4pk4
  • c1bms23chapo6g8i9vkeg62doj
  • e8ngabgbm7bc9gpqjcq7lmq58i
  • anldjt96v9pgffjvm762b41mkh
  • b821sdk3091plu9dab821sdk3091plu9dankh6dfrit
  • r2m7c2cjj9h7i8ccos6j3oglnj
  • webexdomainverification.ER52=f41e01da-7a0e-494a-b5bb-780fbc35f47d
  • kqvba88fq9lnkpfk1vhstqprgt
  • dera3ak5fr6v5l25ve3g099gct
  • docusign=a5d19a11-d078-43e2-9645-b400bcab5a7b
  • js7d9o0pq4bi4uu5e2u6jgojbk
  • 4gb6dqvfbo5l265f28ad67p56l
  • rf9dpkcsmlkdeqogarejua5q7h
  • fle7h61vq0p8rp8clq50n0cvkl
  • uh6hmhtl43i6l8hbt6u1reqi0l
  • v=DMARC1; p=none; rua=mailto:investorservice@lupin.com
  • u9qvk8pcgqa4ol9g85jruop747
  • t7ufv06q07h4uhijek6ve8tp1i
  • ol1d8k0qquh7pegc0si2v5sndd
  • MS=ms91884035
  • v=spf1 include:spf.protection.outlook.com ip4:115.112.88.163 ip4:14.141.178.65 ip4:124.247.204.193 ip4:45.126.255.210 ip4:125.20.97.179 ip4:125.20.97.181 ip4:115.117.121.155 ip4:115.117.121.157 ip4:103.107.25.6 ip4:103.107.25.4 -all
  • 11047565
  • 7oi845perllvfnrnp53bje4r9b
  • 6eobokp1ev5ti958l6pi3hsvr9
  • vn410bucefmv6hruitc2o65un6
  • mqc9kpauogpt5rtlkc4micrl1s
  • vt0ohr6ievcb88ti9dnhugus95
  • npnm11e7t1rbjml3470sm6lapr
  • google-site-verification=qaE_daoZXdTY7zt1tnNO-1i3VPt6BRFzoelmtFkK-co
  • j7docvt06lsncoapd9u0j9lglo
  • lupinstaging.azurewebsites.net
  • 14htclnb6qnciikgqq1vcqrnje
  • l4s7tb9d7ev9tgl1t8kmrrrkne
  • kh37sdpgg1h8e59un6i27uusn9
  • masterclass2018.azurewebsites.net
  • 3dhl47btalta31lmudeml29ap8
  • 5fv6ponsure408jc5nttq4srt3
  • 1dkblstt4hi02cqpljts8pdll
  • st69smdh92v4rddb4nq67i73q0
  • adobe-idp-site-verification=3036c357be3686c2d5aa8937a6d023a48ef42ccb8c1b8f500f3af4330f27ce1d
  • pl03v1vdrdtgfp0c8les32fqj4
  • j4jhpicd6c0mb6enmaj650fa5i
Cloud / SaaS Services Detected
Adobe Microsoft 365 DocuSign Cisco Webex

Leak Screenshot:

Leak Screenshot