Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group: Coinbasecartel

Discovered by ransomware.live: 2026-04-12

Estimated attack date: 2026-04-12

Country: US

Description:

[AI generated] Carter's is a leading American children's apparel brand headquartered in Atlanta, Georgia. Founded in 1865, the company designs, sources, and markets clothing, accessories, and related products for babies and young children. It operates through multiple retail channels including its own stores, e-commerce platforms, and wholesale partnerships. Carter's also owns the OshKosh B'gosh brand and sells products across the United States, Canada, and internationally.

Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 11066

Third Party Employee Credentials: 13


External Attack Surface: 103


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • hostmaster@safenames.net
  • eccllrakafme@idp.email
  • abuse@safenames.net
MX Records
  • mail0.carters.com.
  • mxa-00074d01.gslb.pphosted.com.
  • mail6.carters.com.
  • mail5.carters.com.
  • mail1.carters.com.
  • mxb-00074d01.gslb.pphosted.com.
TXT Records
  • atlassian-domain-verification=Y2C1MyTeq95IzPGWcP1uKhCWS3EEbsBiIh/imxHUKmmv7iJq5Z7NTcOZi1mZTki9
  • cloudflare_dashboard_sso=76714d27f755ae37539e7485bbac1a26
  • miro-verification=707885303023947bd1692e6703c7a7d7b5cb1500
  • facebook-domain-verification=1n1dt8fq8cya1fmqc2foa5xryevg25
  • DELETE-anthropic-domain-verification-39wq2g=DgwCLpB5BmsUj1CcjzK0Y7Sqn
  • google-site-verification=kAHOzQcQOzr2zojmzWGC1CoLbGunU-n1OkrEG1s7-m8
  • MS=8ECCCCEB851C914E48EDA4F6377BA84F9427E555
  • 8RgIyqxZ1EvBC5a/EoDCeJaScTSLD+t2V3CFAwwFXWDLSyiUOXXzgJxURET+TXVKYhj+ouQ+XyLYQNXrtXfx0g==
  • v=spf1 mx ~all
  • google-gws-recovery-domain-verification=62907182
  • _c27zpql7ylkt308t0yqzncqlddt93c7
  • google-site-verification=NR_7PzzsJHhqqNMEjFkf-D2btV1gkUfg6Lto1ECzMxk
  • wiz-domain-verification=bb1af57d8ffb6ae7c5ae6f4f8b495e8c9fd184ab9d111bbcab539d86edc83471
  • google-site-verification=FyoDmA07DOu8na6NcfoAL83poC4jbsFKPdOYRkI3Dgo
  • apple-domain-verification=QKvKhbtc8IDddqoo
  • MS=ms21107958
  • airtable-verification=abcd5f0bec39890fdf76a97699fa362b
  • fastly-domain-delegation-844702-2jV49YeOG3-2024-12-6
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Miro Proofpoint

Leak Screenshot:

Leak Screenshot