Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ANSELL.COM

Group: Clop

Discovered by ransomware.live: 2025-10-31

Estimated attack date: 2025-10-31

Country: BE

Description:

[AI generated] Ansell is a global leader in protection solutions, specializing in the design, development, and manufacture of protective gloves, condoms, and other safety apparel. Founded in Australia with a history spanning 125+ years, now widely recognized in different sectors from healthcare to industrial. They are committed to innovation in products, making them successfully diverse in the global marketplace.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 12

Compromised Users: 44

Third Party Employee Credentials: 55


External Attack Surface: 56


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse enom.com
MX Records
  • esa1.ansell.iphmx.com.
  • esa2.ansell.iphmx.com.
TXT Records
  • google-site-verification=mDYFyjajpKHKszKkOH_YUY6hO3fr9QyLJNTM4zGWwMc
  • onetrust-domain-verification=078c52800228414ca6fcc0e35603c28b
  • google-site-verification=6Q6DyE2EkF_UqVPQ4cG-rovJjgbn1K0xhC0j48LW02I
  • google-site-verification=X6JeFmvIZt4HmlOGvDnB5vVNQ_cDZ3mg0_wMET7l83s
  • globalsign-domain-verification=7EC9DBD3F2A3205EB4368FCE3FA879B8
  • Foxit-domain-verification=8bb5dc3eba0a750626f2318c3bda606d
  • globalsign-domain-verification=F3A291B93463FE23F6F3FF58C6A08B57
  • cisco-ci-domain-verification=3c0c92801910bde2fc91ca384e07baa2c17b39b337a3c3a4c22c370143ecd8a8
  • _globalsign-domain-verification=qNJjBLeRA2v7g_M5TnyYod7VAJOmu3uDzmHvoJi5jS
  • v=spf1 include:spf.protection.outlook.com include:mktomail.com include:_spf.salesforce.com include:o.ansell.com include:i.ansell.com include:_spf.mailgun.org include:_spf.eu.mailgun.org ip4:213.41.42.92 ip4:213.41.42.93 -all
  • google-site-verification=wFo-M3iuJZsycM6YACPp_ftElaRCqsr0uprEsO5NBXQ
  • ssrrhsll3wb63mmcld5m4wmmvv8rr7bf
  • adobe-idp-site-verification=16ddb2a96d20ffce944e353c33201f0d201203b3ae818b66d1f05361f56c5763
  • atlassian-domain-verification=D8pCzUpnjoCvPx/jdUaSk/08wwRqMSa1FWL5HCT7zi7C1S1lrzAjlbNyiV5nowvI
  • docusign=8fbdf57b-6774-470f-b486-de7c38d2acc3
  • globalsign-domain-verification=12C4E7406462C084EDA2BBAE4FCD8299
  • globalsign-domain-verification=F2CAF032BE581A5A8C5788EDA0E39F85
  • MS=ms12143034
  • teamviewer-sso-verification=a53be0f455c8436294411bd5880873c5
  • docusign=6b39d875-5d5f-40b9-a4fd-bd8e56fdb49d
Cloud / SaaS Services Detected
Adobe Atlassian Microsoft 365 Salesforce Marketo Teamviewer Mailgun Cisco OneTrust DocuSign

Leak Screenshot:

Leak Screenshot