Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Lynx
Discovered 2024-10-08 17:43 UTC
Est. attack date 2024-09-09
Country US

Description:

Blain Supply, Inc. operates as a specialty discount retailer in the United State...

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 873

Third Party Employee Credentials: 1


External Attack Surface: 100


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • us-smtp-inbound-2.mimecast.com. Mimecast
  • us-smtp-inbound-1.mimecast.com. Mimecast
TXT Records
  • apple-domain-verification=rflJfF0BUKVXGEutSvaqie8954jnbfWws1E0iCNTGfU
  • facebook-domain-verification=eyqdmeif8o5p541iy0ukoa5fjtn6xo
  • g8s9ova0pidkgtdb37jo439spi
  • google-site-verification=EgERg44aY3dRJNQLxnCTrbR2SFWM839aScr2Xmiqq4I
  • v=spf1 include:_spfw.farmandfleet.com include:_spfd.farmandfleet.com include:_spfc.farmandfleet.com include:_spf.portalmedia.net include:us._netblocks.mimecast.com include:amazonses.com include:_spf.google.com ~all
  • 0ed1fe018a076d579c022a441b961fe7e2bbf8edf6
  • 20gg7v12aduq7lqo9486sd1jc3
  • 43rui41257vj2jjs2eo6grkru9
  • MS=ms34857394
  • apple-domain-verification=7HTQWJ3ayDYzG7TM
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail Microsoft 365 Mimecast

Leak Screenshot:

Leak Screenshot