Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Boyden

Group: Medusa

Discovered by ransomware.live: 2024-05-06

Estimated attack date: 2024-05-06

Country: US

Description:

Boyden (founded 1946) - a consulting firm engaged, among other things, in the search for managers for various areas of business, interim management, and so on. Boyden corporate office is located in 520 White Plains Rd Ste 500, Tarrytown, New York, 10591, United States and has 984 employees. The total amount of data leakage is 79.3 GB


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 12

Third Party Employee Credentials: 0


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d294677b.ess.barracudanetworks.com.
  • d294677a.ess.barracudanetworks.com.
TXT Records
  • v=spf1 ip4:207.99.54.171 ip4:207.99.109.201 include:spf.protection.outlook.com include:e2ma.net include:spf.ess.barracudanetworks.com ~all
  • MS=ms57654596
  • Rp8eWwsk
  • od8lhspl0oknc6efr9mccil0uk
  • google-site-verification=vL3jeGC0v-kd1eT6efpjv2a_95aOGuwv7KOOjypvC8k
  • google-site-verification=P6LhIg87s9dLddOtANSqe96LdmV2_rOtwp5M1VBTFhM
  • trend-micro-v1-domain-verification.a192ff91eb265cab9375f24e0886854d=be404df6-8c4b-4b7c-9132-99853ee1b704
  • xU33MxU/Ies9UvESTTllJtFuyHvbjSuYtaDr1vV+XguCGBtpm0LeZ/4setce2QuMdNWbGEJg68mIiRMlPXDGBA==
  • daup3bupuojd86c4sa6r0mg5sl
  • google-site-verification=cELjODZlmuvjE8uoPDPJ2orosTiNpVaAxfRlABW-cIk
  • jadm22u9f7oo3ug7mbe2ihb7sc
  • logmein-verification-code=ffe03d84-aa67-4690-84e9-420a12d5a577
  • 34i6q2a597csg99t2aovbc75s3
Cloud / SaaS Services Detected
Microsoft 365 LogMeIn

Leak Screenshot:

Leak Screenshot