Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Academy Mortgage Corporation

Group: alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2023-05-14

Description:

Academy Mortgage is a family-owned mortgage company based in Draper, Utah, which was founded in 1988. Academy is a direct lender, meaning it handles all of its underwriting and funding in house. It offers both new purchase mortgages and refinance loans, originating more than $15.65 billion in loans in 2021. Duane is the principal owner and founder of Academy Mortgage Corporation, a national mortgage banking firm with its headquarters in Draper, Utah. Duane started Academy Mortgage in 1988. Academy has over 350 branch offices across the country; and is licensed to originate loans in 49 states and the District of Columbia.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namecheap.com
  • c39f662ab593448fa139a517a4dec077.protect withheldforprivacy.com
MX Records
  • academymortgage-com.mail.protection.outlook.com.
TXT Records
  • onetrust-domain-verification=aaf23411cf7d4788a508aaa89a46462e
  • dropbox-domain-verification=eum7jj44lcx7
  • finicity_partner_id:2445582915509
  • finicity_partner_id:2445582808558
  • zapier-domain-verification-challenge=1ce958dc-34fb-48c2-be4b-076b638a4cc7
  • google-site-verification=Vbw0NGRjmez8C8_tEFN0KmvTgywtfi4OWF7FsvZ7q1w
  • apple-domain-verification=0ni5YnNwARDa5o8l
  • rrdge30sgc3da1fg3cca8k36ig
  • l3r8c64s8tq0lsh3p413mq43f6
  • box-domain-verification=e2663fe21534b59b85a7c7d612131e7bd324faccfabe3d4851c081dfec6d2918
  • MS=ms71670573
  • docusign=1499e5df-485d-4dcf-bca7-24dbfc15371f
  • XsZMSp95OdmbDJ9+/H6f6NOvd9bTxDF7c5HebgZ4t1psIYyb8IAuD1+XYnhl9rq92NbjetLvZDS89z/UWNPbmg==
  • v=spf1 ip4:24.249.226.88/29 ip4:54.240.58.26 ip4:54.240.58.27 ip4:207.178.145.170 include:spf.protection.outlook.com include:sendgrid.net include:mailgun.org include:_spf.optimalblue.com include:_spf.eeoo.co ~all
  • ZOOM_verify_L3VBG9pCS4OP7pjbSc-Gcw
Cloud / SaaS Services Detected
Apple Box Dropbox Microsoft 365 Mailgun SendGrid OneTrust DocuSign Zoom

Leak Screenshot:

Leak Screenshot