Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

pln.co.id - PLN INDONESIA

pln.co.id

Group Babuk2
Discovered 2025-03-31 17:24 UTC
Est. attack date 2025-03-31
Country ID
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

pln.co.id - PLN INDONESIA

Infostealer activity detected by HudsonRock

Compromised Employees: 2960

Compromised Users: 26109

Third Party Employee Credentials: 823


External Attack Surface: 200


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mxpln.pln.co.id.
TXT Records
  • MS=7CC2D89AFE23298EAEA8805BBB9A6538CA6BC4AD
  • v=spf1 mx ip4:103.229.166.0/24 ip4:202.46.67.0/24 ip4:103.145.30.229 ip4:103.145.30.230 include:_spf-icon.pln.co.id include:_spf-pln.pln.co.id -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot