Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.tokiwa-group.co.jp

Group: Ransomhub

Discovered by ransomware.live: 2024-09-27

Estimated attack date: 2024-08-30

Country: JP

Description:

Tokiwa Group is a Japanese company that specializes in the production and distribution of cosmetics. Established in 1948, the company is renowned for its innovation in cosmetic packaging, formulations, and applicators. With a strong focus on quality and customer satisfaction, Tokiwa Group collaborates with various global beauty brands to deliver high-performance cosmetic solutions.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • aspmx4.googlemail.com.
  • aspmx5.googlemail.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
TXT Records
  • v=spf1 ip4:216.58.220.115/32 ip4:172.217.161.83/32 ip4:54.150.111.130/32 include:_spf.google.com include:spf.haihaimail.jp include:_spf.leapy.jp a:hrsite.server.leapy.jp ~all
  • MS=ms85394016
  • v=DKIM1; k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAm4/A6v3i78A5+K1ipbPGQN7UygvSS/qtUIhDKyubXvLFWltivjXZhklY7QsE67u8SrXAhkCJs8ZzJdx/F095kaWKdp+b9ifIF8e1QcJhSrMDJndIqjjm9c/r34yulPzceX0RcdxfJ84unx4kxTLUoDDIzuAV+rF9eJ9fCggWFDYawrTBexGSaBWuk1uP7qvTf" "Z8Esd3kj4jNZ6qlyp45pIlNUFVxE5T8oXyTo6PmKuxBI8JjcjzEiFJJaLNze8gNTmp1NkArsNxaeoC+xXdiEnxyH2YZePTAXJyAq6tCFa52CSCtEDfy6RyJGqi9aGeuXac+IUUcSJ/C5KWVDnpRkQIDAQAB
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot