Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Somotsoft

Group: Worldleaks

Discovered by ransomware.live: 2025-07-21

Estimated attack date: 2025-07-02

Country: US

Description:

[AI generated] Somotsoft is a technology company specializing in custom software development, consulting and technology services. Established in 2002, they address the IT needs of businesses across various industries. Using their own methodology known as the "Somotsoft Way", they provide solutions to clients by leveraging the latest technologies. They also offer IT managed services and mobile application development. Their operations are global, with offices in the USA and Vietnam.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 10

Third Party Employee Credentials: 10


External Attack Surface: 49


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • aspmx3.googlemail.com.
  • aspmx4.googlemail.com.
  • aspmx5.googlemail.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • v=spf1 include:aspmx.googlemail.com ~all
  • MS=2A2CC24FBDF3C5C096A2F0CA6748BCBF20D2C35E
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot