Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo BOYDEN.COM

Group: Clop

Discovered by ransomware.live: 2026-02-14

Estimated attack date: 2026-02-14

Country: US

Description:

[AI generated] Boyden is a global executive search firm with over 70 offices in more than 40 countries. Founded in 1946, it is one of the oldest firms in its industry. Boyden offers services in executive search, interim management and leadership consulting, serving both public and private corporations, as well as nonprofits and startups across all industries.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 12

Third Party Employee Credentials: 0


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d294677a.ess.barracudanetworks.com.
  • d294677b.ess.barracudanetworks.com.
TXT Records
  • v=spf1 ip4:207.99.54.171 ip4:207.99.109.201 include:spf.protection.outlook.com include:e2ma.net include:spf.ess.barracudanetworks.com ~all
  • google-site-verification=cELjODZlmuvjE8uoPDPJ2orosTiNpVaAxfRlABW-cIk
  • daup3bupuojd86c4sa6r0mg5sl
  • jadm22u9f7oo3ug7mbe2ihb7sc
  • xU33MxU/Ies9UvESTTllJtFuyHvbjSuYtaDr1vV+XguCGBtpm0LeZ/4setce2QuMdNWbGEJg68mIiRMlPXDGBA==
  • logmein-verification-code=ffe03d84-aa67-4690-84e9-420a12d5a577
  • google-site-verification=vL3jeGC0v-kd1eT6efpjv2a_95aOGuwv7KOOjypvC8k
  • trend-micro-v1-domain-verification.a192ff91eb265cab9375f24e0886854d=be404df6-8c4b-4b7c-9132-99853ee1b704
  • MS=ms57654596
  • od8lhspl0oknc6efr9mccil0uk
  • google-site-verification=P6LhIg87s9dLddOtANSqe96LdmV2_rOtwp5M1VBTFhM
  • 34i6q2a597csg99t2aovbc75s3
  • Rp8eWwsk
Cloud / SaaS Services Detected
Microsoft 365 LogMeIn

Leak Screenshot:

Leak Screenshot