Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

THK Co., Ltd.

thk.com

Group Hunters
Discovered 2023-11-15 12:55 UTC
Est. attack date 2023-11-15
Country JP

Description:

Country : Japan - Exfiltraded data : yes - Encrypted data : yes

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1837

Third Party Employee Credentials: 2


External Attack Surface: 55


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse1api.net
  • domain.masterbrights.jp
  • infodomain-contact.org
MX Records
  • thk-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=CYb2XHP2TSDq3i00sSORwkBzPCIBpPPSY1zUKLUAkLQ
  • box-domain-verification=70c7d20872c41277b46c0b82095fbc346ce61ec2373abe8da03d945cecd45d52
  • globalsign-domain-verification=YzftsdgmG9ISieTUSnhVnfbEFsRDN6RfiftFjLByEC
  • v=spf1 include:spf.protection.outlook.com ip4:12.251.168.38 ip4:106.186.201.111 ip4:106.186.201.112 ip4:106.186.201.113 ip4:209.87.159.97 ~all
Cloud / SaaS Services Detected
Box

Leak Screenshot:

Leak Screenshot