Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Everbrite

Group: play

Discovered by ransomware.live: 2024-04-04

Estimated attack date: 2024-03-22

Country: US

Description:

United States


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 10

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • docusign=f5e1e5a3-0c5b-4772-83b0-fb8aaf37fcd7
  • oy5cJ971J56HdVfu8wAxGv3sCuRBScO7O5h8e4TM/nxf4nVmBFXLv7ySsq+3yPQ2DWFDF+1dTzzqs710RzHfZg==
  • google-site-verification=vNxsqrhgvK5G-9Z24huOeBs_cjZpCosTgoRZPNG5wbQ
  • v=spf1 ip4:74.62.85.6 ip4:74.62.85.2 ip4:207.170.62.150 ip4:192.254.121.248 ip4:208.185.229.0/24 ip4:208.185.235.0/24 ip4:148.59.108.0/23 ip4:148.59.106.0/23 ip4:208.77.4.0/22 ip4:162.144.21.207 ip4:162.144.21.203 ip4:208.86.168.7 ip4:135.84.68.123 ip4:20" "6.152.14.54 ip4:68.171.172.82 ip4:45.62.178.142 ip4:149.20.198.109 ip4:205.201.128.0/20 ip4:198.2.128.0/18 ip4:148.105.0.0/16 include:spf.protection.outlook.com include:us._netblocks.mimecast.com include:_spf.createsend.com include:_phishspf.knowbe4.com i" "nclude:_spf.ultipro.com include:_spf.mlsend.com -all
  • apple-domain-verification=KKOoMDu7NsQFh4wY
  • atlassian-domain-verification=boy/VOM1Mj8uNxwRolRWKn1jUj/m753omvgMClttiPOYxfMrV3KH8DDMdrSNmBo1
  • adobe-idp-site-verification=4a2b84563c3774c961b28ed8d4455a7f7175e7a37db8dada187f7c7c8071a9b5
  • mailerlite-domain-verification=b16cd89008d40ce0911e99c33bdba46699f3c881
  • MS=ms49517823
  • ZOOM_verify_RnLM_qipS3ut-Xbrnji1vQ
  • google-site-verification=mtulFckd4r5WD04zzEWaAWGos-3maL91VKgph8b_UmU
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 KnowBe4 Mimecast DocuSign Zoom

Leak Screenshot:

Leak Screenshot