Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Acteon Group

Group: hunters

Discovered by ransomware.live: 2024-06-17

Estimated attack date: 2024-06-17

Country: FR

Description:

Country : France - Exfiltraded data : yes - Encrypted data : no


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 1

Third Party Employee Credentials: 72


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • acteongroup-com.mail.protection.outlook.com.
TXT Records
  • ZA=M0J8xITgwgCZ9NoYWJJfBw==
  • google-site-verification=awrbe-3d1PguidSQi8_sYXqfZN3nv4t5W8Q9p4z6lLI
  • v=spf1 ip4:198.37.154.52 ip4:46.255.202.4 ip4:46.22.192.164 ip4:185.42.117.108 ip4:185.42.117.109 ip4:46.252.181.103 ip4:46.252.181.104 ip4:195.6.20.124 ip4:90.83.194.73 ip4:64.19.187.3 ip4:60.231.36.79 include:spf.protection.outlook.com include:servers.m" "csv.net include:akemail.fr ip4:50.216.82.138 ip4:23.24.65.193 ip4:35.174.145.124 include:_mailcust.gandi.net include:25048055.spf04.hubspotemail.net include:_spf.salesforce.com -all
  • infor-cloudsuite-domain-verification=L9KL5K57QWZXN8RZ4DPXQZQLPHJJ55DA6QERART5S8EAJCL3MV5Q6ZUSB4SKWW3D
  • fFa+DHW719nvPs+tSQVrycWcjZ/Q/THlbSG6crcmV+BLYBlqBtmIru/9dkvyvI/BH3oeQ8Bp2y3I0Yp20e+vgg==
  • MS=ms39907901
  • MS=ms32824650
  • MS=ms60498227
Cloud / SaaS Services Detected
HubSpot Microsoft 365 Salesforce

Leak Screenshot:

Leak Screenshot