Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-04-07 16:12 UTC
Est. attack date 2025-04-07
Country PL

Description:

SMYK stores offer a wide selection of clothing and footwear, toys , baby accessories and other products for children aged 0-14. The SMYK chain’s advantage is the availability of a multitude of pro ducts of various categories for children aged 0-14 “under one roo f”. We are ready to upload more than 28 GB of essential corporate doc uments such as: corporate NDA’s, corporate licenses, agreements a nd contracts, financial data (audits, payment details, reports), contact numbers and e-mail addresses of employees and customers, etc.

Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 5116

Third Party Employee Credentials: 10


External Attack Surface: 104


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-contactpublicdomainregistry.com
  • gdpr-maskinggdpr-masked.com
MX Records
  • smyk-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • MS=293ABE0ADDA5184F74C73685A007D71093D86A55
  • MS=ms56030113
  • T9bu8jEhizS84gc4m74CsukHy2Ncr309WTQn2f4sHzTfK1sON0rppLNCRkGpOJXqj3e7b8ms7eyJoDLsM9ajEA==
  • atlassian-domain-verification=Ieypuq3KbT4ND3xTDUQ0/rPYvNCoJyD05OSbXkPaSvLOQAkhovcfAKm/WlV7pyel
  • atlassian-sending-domain-verification=ac4eda56-bd1b-4917-8f8a-dbd0d4c64c19
  • google-site-verification=Id15nMo4wrsRgr2GJyedquVrRv5B9-MssWzohrGMx3g
  • google-site-verification=cmn0bSw_9um8TXqNfTBpcZFTRARtbQYuiN0Z9IjQYVw
  • google-site-verification=l2s2FWaN2TvLcNNDz3WWtHgWjDxqZMo3qb_98Olwuug
  • google-site-verification=lVWxDaet0g4IST0R7AZUxLF65xJZeFNtPX-fQFLoxB
  • mojecertpl-site-verification-CPD8cEcDBkAhONR4Zxgr4iaq4XRZoYlx
  • prowly-verification=5cdd00aaf91824c0278f2d383e82e6fdfa3082caaa29b193eaab1a5c986eb854
  • v=spf1 a mx ip4:85.31.246.0/24 ip4:91.199.101.0/24 a:ex.smyk.com include:support.zendesk.com include:smtp.zendesk.com include:mail.zendesk.com include:spf.protection.outlook.com -all
  • MS=02A1BE2D642DE293D9B4F1B2A9C079D706FF9677" "3600
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Zendesk