Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Charles Trent

Group: hunters

Discovered by ransomware.live: 2024-01-24

Estimated attack date: 2024-01-24

Country: GB

Description:

Country : United Kingdom - Exfiltraded data : yes - Encrypted data : yes


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 40

Third Party Employee Credentials: 0


External Attack Surface: 14



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • trents-co-uk.mail.protection.outlook.com.
TXT Records
  • _globalsign-domain-verification=qZ2NLCYwiJmJEClYtNiE0-AiE_zAeTNgasZjTEa5HD
  • _globalsign-domain-verification=PEjb6h6R894qLxYxZoRdh8LaqCc6-7g0_eoxO0lw0X
  • _globalsign-domain-verification = PEjb6h6R894qLxYxZoRdh8LaqCc6-7g0_eoxO0lw0X
  • nordpass-domain-verification=aaba76ac122ca86691a8b0d87e443e2b189284dcc6120841304c0952c4524c23
  • _globalsign-domain-verification=p4zX5D60g6AVdu02mfDLxpPeduo9IZC42hJGhIDXr7
  • _globalsign-domain-verification=3ZxVruLVP52uDJjgHNjA27pnDSL-8PzdPDqkemFUs0
  • v=spf1 mx include:sendgrid.net include:amazonses.com include:spf.protection.outlook.com ip4:34.246.98.65 ip4:18.130.132.79 ip4:92.19.208.21 include:spf.mandrillapp.com include:servers.mcsv.net include:mailgun.org -all
  • facebook-domain-verification=falomatpbhpszewt2hj62lswcg2fc5
  • google-site-verification=78PGU6_Mz_Hb9v5B2al7NQnxeXt6nGoqn2SE2lUDolg
  • MS=ms61319079
  • have-i-been-pwned-verification=0796ddefa3d86e88cf1b386dc7ee2780
  • google-site-verification=BDF2N41PcQSlI2vcS01AzH5BiqBoegAiYx8sDuTUz6c
  • facebook-domain-verification=iwcg6ua5a630q2f0npc61tard2n09j
  • _dab74e0ff0eee3a8020756e601e5d701.sellyourcarorvan.trents.co.uk. NS 7252.dns-approval.sslmate.com.
  • _globalsign-domain-verification=s5LcH_qkV1n7jL9PeKhJuh-2fzqrtDKLkyN8bmCZ91
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Mailgun Mandrill SendGrid Have I Been Pwned

Leak Screenshot:

Leak Screenshot