Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo ctd-dortmund.de

Group: Safepay

Discovered by ransomware.live: 2025-05-21

Estimated attack date: 2025-04-08

Country: DE

Description:

[AI generated] N/A



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mx04.hornetsecurity.com.
  • mx03.hornetsecurity.com.
  • mx02.hornetsecurity.com.
  • mx01.hornetsecurity.com.
TXT Records
  • v=spf1 mx ip4:87.191.168.122 ip4:217.91.164.182 include:spf.protection.outlook.com include:spf.hornetsecurity.com ~all
  • apple-domain-verification=FkdpoBZd2znBqEoA
  • MS=ms65386492
Cloud / SaaS Services Detected
Apple Microsoft 365 Hornetsecurity

Leak Screenshot:

Leak Screenshot