Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

ingrammicro.com

ingrammicro.com

Group: Safepay

Discovered by ransomware.live: 2025-07-29

Estimated attack date: 2025-07-29

Country: US

Description:

[AI generated] Ingram Micro is a global technology and supply chain services provider. The company, established in 1979, offers a broad range of solutions and services to businesses around the globe, including cloud, mobility, supply chain, and technology solutions. It serves markets including IT, telecommunications, consumer electronics, and others.

Infostealer activity detected by HudsonRock

Compromised Employees: 112

Compromised Users: 10360

Third Party Employee Credentials: 364


External Attack Surface: 161


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusereport@key-systems.net
  • info@domain-contact.org
  • abuse@key-systems.net
MX Records
  • mx0a-0021cb01.pphosted.com.
  • mx0b-0021cb01.pphosted.com.
TXT Records
  • docker-verification=07ec3c3d-7cac-44f2-8193-8eece3af0cae
  • atlassian-domain-verification=0BEP3SAajmOlV9QqKLkYeibAvoDki0tAOgz/fDoj74x5zw47f73GFVr1WYyJCYgo
  • _f7n8x3gn89fuun557fjnu1dbld345my
  • _wo0dmbp577f7zrsmcx17r683t5iehvv
  • _etdtuldls0397ncvp3if3o1w4z0so3m
  • _n1yf9uxqvz69dml5fa5jcrfdgqug92l
  • traction-guest=d988f86d-c3c5-4e44-b16c-dca3c03c4126
  • _iz9l80hit4ndxo19us3fzn26ghfqf53
  • dropbox-domain-verification=9q0h16zyatwl
  • traction-guest=9bcca760-1607-4774-af0e-af294d5e1321
  • _ztxtdgs9lwdi2wbnzo70vijwfv0xcn3
  • _4iumnkt0ddi8keym537g8vdg1xu8ge8
  • _4bbw8ymw610nj5fn01b8x8kj2bbm83x
  • _knfky746ar6irqkx6izre67xe0ov93w
  • dropbox-domain-verification=086jlfgetx5l
  • _bqbq77g4fe6yhv8aisr5yfdsiohxa5i
  • _jdy28hxtm5525r9py9x4sz06z20hi65
  • _xpsb95r8jzhop775a9m927ggk0vrawk
  • _6flvnb2zxw5r6cmdu3ix9pbbnt5trfx
  • dropbox-domain-verification=198qppywlg4l
  • vmware-cloud-verification-023dc71b-0a4a-43c0-8412-6361d1a64ee3
  • _nnc7ztpsy1xjtdnwtxwer4dtdgkkufj
  • _7phx78iv2q0zj9ijd9p3wwj9u6pp8j2
  • _8uibww2xzge60scm46d1roasqmepdwz
  • teamviewer-sso-verification=fa21f7d5f0f24467a361a1375fdf7456
  • docusign=950f3aeb-adf4-4ed9-a83d-5cc1b2d7196f
  • miro-verification=1f063abc162fa427a5c7ac6ed3433a7eeea2bc65
  • _1blaviirsug6ipfg0dcoe4u23rujl89
  • _60kjuahc4ryeidte6lr1nt3thep6m7h
  • _w5tzar2vspwogwf1t6xjlny7p1kd6m5
  • _5bql9vvgnimbbdsivcpx8q9asm5kxi3
  • _kk7hx1vlm2qcc0byp19nvg72kuimrbk
  • _i58v5fjwo513i5cj3vq141hpy4njmlr
  • facebook-domain-verification=68gb13903yfa032g1hvoi9or68efqh
  • figma-domain-verification=d5ec9de77f3acd26ae707750d4a00f5c0c161165c72b7ca5f189981a6f22e294-1733417104
  • _dlycg1r3mnbbzn8ya3i314yus6d7zrt
  • _d6ixy8mdqwc8qn38yt7nuf5v8a66j74
  • _fgfhva2g6pq6cor4xrodmy2x5hyymvg
  • _9ga3rnz13wqpo0p2s5l6l22ejx4u9a5
  • google-site-verification=0PxZuOVM7IhbgKL3hLz3hB558Jq0nsQwWUSFzlxhN9I
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • _zlxpsedggnqwfpo734hbax4u7cq7v2y
Cloud / SaaS Services Detected
Atlassian Dropbox Box Miro Teamviewer DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot