Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Lupin Limited

lupin.com

Group Killsec
Discovered 2025-03-28
Est. attack date 2025-03-28
Country IN

Description:

N/A

Infostealer activity detected by HudsonRock

Compromised Employees: 63

Compromised Users: 162

Third Party Employee Credentials: 144


External Attack Surface: 141


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-contact@publicdomainregistry.com
  • winniesaldanha@lupinpharma.com
  • bhaskargangula@lupin.com
MX Records
  • lupin-com.mail.protection.outlook.com.
TXT Records
  • n0l4ol6360ch2nftdtkplbe36f
  • 9EF84017C78965598E79EA5ADC09856C2FADF104852079A1CE4162F26A2B61B6
  • globalsign-domain-verification=SagGc-373lUddhAfurS5Xbv-mWc_RJIOqnFHsJP_tu
  • v=DMARC1; p=none; rua=mailto:investorservice@lupin.com
  • v8b1n0c6gkmc84d59q4b3l2cof
  • lupinstaging.azurewebsites.net
  • uh6hmhtl43i6l8hbt6u1reqi0l
  • masterclass2018.azurewebsites.net
  • 1eeosck29nfeisbiuepr5ct50r
  • 1d0rjsp3bhpc5e76krbu9gqva7
  • og2nonh2cojbj6snqsn7i71hd3
  • fcjmms75n93i7i6449pdftcahk
  • adobe-idp-site-verification=3036c357be3686c2d5aa8937a6d023a48ef42ccb8c1b8f500f3af4330f27ce1d
  • 4bhter9ouihjs0if2qcqtc7k6d
  • npnm11e7t1rbjml3470sm6lapr
  • st69smdh92v4rddb4nq67i73q0
  • frm67td2kut2p0f2muj3p2sa0m
  • t2j2eohvandd6qllfjj5sla7jn
  • 14htclnb6qnciikgqq1vcqrnje
  • s765i70c8b7j595iropdngni64
  • l4s7tb9d7ev9tgl1t8kmrrrkne
  • ena6camctbm757giq5it82vto1
  • a0v3eoj2p98p3hlcs7p4o41h9s
  • undefined
  • webexdomainverification.ER52=f41e01da-7a0e-494a-b5bb-780fbc35f47d
  • MS=ms91884035
  • google-site-verification=qaE_daoZXdTY7zt1tnNO-1i3VPt6BRFzoelmtFkK-co
  • n9p2ed2shvmiv7choqr8f0ocjd
  • ud9q7e6dbe3bd9l5flat6kmer9
  • le5l5vtejarjf5g32quscig83v
  • kh37sdpgg1h8e59un6i27uusn9
  • 4t84760pqg08vpvbec9574kmbg
  • b821sdk3091plu9dab821sdk3091plu9dankh6dfrit
  • 11047565
  • v=spf1 include:spf.protection.outlook.com ip4:115.112.88.163 ip4:14.141.178.65 ip4:124.247.204.193 ip4:45.126.255.210 -all
  • docusign=a5d19a11-d078-43e2-9645-b400bcab5a7b
  • r2m7c2cjj9h7i8ccos6j3oglnj
  • mqc9kpauogpt5rtlkc4micrl1s
  • bt7impu5uup79348mf12d5fe7p
  • 1j7fth6t3std7jpg6jt9lgnfts
  • 7oi845perllvfnrnp53bje4r9b
  • 3dhl47btalta31lmudeml29ap8
  • 42dhc58s502m4vej3kdnj9g7ec
Cloud / SaaS Services Detected
Adobe Microsoft 365 DocuSign Cisco Webex

Leak Screenshot:

Leak Screenshot