Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

lantro.com

lantro.com

Group Devman
Discovered 2025-05-31 17:16 UTC
Est. attack date 2025-05-31
Country JP

Description:

1.1 million USD

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 12


External Attack Surface: 3


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • a14c90ffc8bcb7efd39d20e2f9ef78f3590fbdf05f8f80288b05b84f7b3a91aalantro.com.whoisproxy.org
  • a14c90ffc8bcb7efd39d20e2f9ef78f364359fb739b304851d6633224154b58dlantro.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • a14c90ffc8bcb7efd39d20e2f9ef78f3b748b330e58b4a63e38ee1f4b3fac559lantro.com.whoisproxy.org
  • a14c90ffc8bcb7efd39d20e2f9ef78f322c44aac8e420884931380ebc60b53c9lantro.com.whoisproxy.org
MX Records
  • lantro-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:amazonses.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail