Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo AMERICANNATIONAL.COM

Group: Clop

Discovered by ransomware.live: 2023-07-07

Estimated attack date: 2023-07-07

Description:

American National Insurance


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 135

Third Party Employee Credentials: 2


External Attack Surface: 32



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • mx2.hc4527-63.iphmx.com.
  • mx1.hc4527-63.iphmx.com.
TXT Records
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • Foxit-domain-verification=6dba0430e2cd3f253b3a73b08bac4804
  • yahoo-verification-key=vkTAkZ+ZpGZrbxm7E3IV29/rgoPbI8JgeW67+VblOQQ=
  • google-site-verification=a1jYpIKYNZIc2vsbz8CJLF3yCYLfcwmocXv1QBhOluY
  • insomnia-validation=19b7e4290628479298f7260087f94f5595e43c0d1d4f5c2eb30886000cca656f
  • sending_domain898751=a0f98b33cc670ad97456a34465a44c0dec9969d1ae52b4c02f057971cd714f12
  • adobe-idp-site-verification=0f0100d63df2b4b5eb894f5c03b6df39133e739287ed9fc010b161f1ab3658c8
  • atlassian-domain-verification=+pTjnqg2DJPQLB4Kk4Uf3QSK246kx/8w9dJUUErg0bk0sgaGzKhxEhSHYRuYhbxZ
  • 6skb8gjtpckqd64dt3fb5tl8dxdm4mqh
  • zscaler-verification-159247347-11222025-7GNw9T
Cloud / SaaS Services Detected
Adobe Atlassian Zscaler Proofpoint

Leak Screenshot:

Leak Screenshot