Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

ANSELL.COM

ANSELL.COM

Group: Clop

Discovered by ransomware.live: 2025-10-31

Estimated attack date: 2025-10-31

Country: BE

Description:

[AI generated] Ansell is a global leader in protection solutions, specializing in the design, development, and manufacture of protective gloves, condoms, and other safety apparel. Founded in Australia with a history spanning 125+ years, now widely recognized in different sectors from healthcare to industrial. They are committed to innovation in products, making them successfully diverse in the global marketplace.

Infostealer activity detected by HudsonRock

Compromised Employees: 12

Compromised Users: 44

Third Party Employee Credentials: 55


External Attack Surface: 56


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@enom.com
MX Records
  • esa1.ansell.iphmx.com.
  • esa2.ansell.iphmx.com.
TXT Records
  • openai-domain-verification=dv-ormMKXygupEaIskeZ6jeSrFm
  • globalsign-domain-verification=F3A291B93463FE23F6F3FF58C6A08B57
  • globalsign-domain-verification=12C4E7406462C084EDA2BBAE4FCD8299
  • cisco-ci-domain-verification=3c0c92801910bde2fc91ca384e07baa2c17b39b337a3c3a4c22c370143ecd8a8
  • globalsign-domain-verification=F2CAF032BE581A5A8C5788EDA0E39F85
  • adobe-idp-site-verification=16ddb2a96d20ffce944e353c33201f0d201203b3ae818b66d1f05361f56c5763
  • onetrust-domain-verification=078c52800228414ca6fcc0e35603c28b
  • globalsign-domain-verification=7EC9DBD3F2A3205EB4368FCE3FA879B8
  • Foxit-domain-verification=8bb5dc3eba0a750626f2318c3bda606d
  • atlassian-domain-verification=D8pCzUpnjoCvPx/jdUaSk/08wwRqMSa1FWL5HCT7zi7C1S1lrzAjlbNyiV5nowvI
  • google-site-verification=wFo-M3iuJZsycM6YACPp_ftElaRCqsr0uprEsO5NBXQ
  • MS=ms12143034
  • docusign=8fbdf57b-6774-470f-b486-de7c38d2acc3
  • google-site-verification=X6JeFmvIZt4HmlOGvDnB5vVNQ_cDZ3mg0_wMET7l83s
  • _globalsign-domain-verification=qNJjBLeRA2v7g_M5TnyYod7VAJOmu3uDzmHvoJi5jS
  • ssrrhsll3wb63mmcld5m4wmmvv8rr7bf
  • v=spf1 include:spf.protection.outlook.com include:mktomail.com include:_spf.salesforce.com include:o.ansell.com include:i.ansell.com include:_spf.mailgun.org include:_spf.eu.mailgun.org ip4:213.41.42.92 ip4:213.41.42.93 -all
  • google-site-verification=6Q6DyE2EkF_UqVPQ4cG-rovJjgbn1K0xhC0j48LW02I
  • docusign=6b39d875-5d5f-40b9-a4fd-bd8e56fdb49d
  • google-site-verification=mDYFyjajpKHKszKkOH_YUY6hO3fr9QyLJNTM4zGWwMc
  • teamviewer-sso-verification=a53be0f455c8436294411bd5880873c5
Cloud / SaaS Services Detected
Adobe Atlassian Microsoft 365 Salesforce Marketo Teamviewer Mailgun Cisco OneTrust DocuSign

Leak Screenshot:

Leak Screenshot