Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Choice AG

Group: Crypto24

Discovered by ransomware.live: 2025-05-29

Estimated attack date: 2025-05-29

Data exfiltrated: 800GB

Description:

[AI generated] "Choice AG" is a Switzerland-based company that specializes in providing solutions for investment and risk management. It offers software as well as asset management services that cater towards institutional and private investors alike. Their solutions are geared to help clients manage risk while optimizing investment returns. Services range from portfolio management to risk analysis, covering various types of assets from bonds to real estate.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • choice-de.mail.protection.outlook.com.
TXT Records
  • google-site-verification=jWCsvv9sv5SajEes-SmraeL02ZgTKGOe_b9w8m-VIIU
  • sending_domain971983=f78a94474548344225752d3f254d74ac9c90900b712e9ebf70d2ab645fbc5c5d
  • google-site-verification=wTu_eoD7JndBp4lMmbi0m9qCfjX4g__ASz9ZgHuJMy0
  • MS=ms77274925
  • pardot971983=ed56986e293ac75377b2894899c6c3abffc7c77572905b10c0a08de6f5cde2c7
  • canva-site-verification=dWYe8_3IKk9KteFCxAxkZQ
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGoQCNwAQdJBy23MrShs1EuHqK/dtDC33QrTqgWd9CJmtM3CK2ZiTYugkhcxnkEtGbzg+IJqcDRNkZHyoRezTf6QbinBB2dbyANEuwKI5DVRBFowQOj9zvM3IvxAEboMlb0szUjAoML94HOkKuGuCkdZ1gbVEi3GcVwrIQphal1QIDAQAB;
  • v=spf1 mx a ip4:62.128.1.0/24 ip4:213.95.71.0/24 ip4:213.95.72.0/22 include:spf.protection.outlook.com include:sendgrid.net include:amazonses.com include:_spf.salesforce.com include:spf-de.emailsignatures365.com ~all
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Salesforce SendGrid