Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo FMFCU.ORG

Group: clop

Discovered by ransomware.live: 2023-07-10

Estimated attack date: 2023-07-10

Description:

Franklin Mint Federal Credit Union


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 26

Third Party Employee Credentials: 0


External Attack Surface: 4



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • fmfcu-org.relay1h.spamh.com.
  • fmfcu-org.relay1g.spamh.com.
  • fmfcu-org.relay1i.spamh.com.
TXT Records
  • jvsJ6QlJfi4u1BVJqysr4eJIhoYJ7q9msDk1z8Rlq3arcz4Z5K7Nhqz0GBKMOpF6Nvc9o1wEL98IpIXTPOPt4Q==
  • eca8p4ju1vtfic76asstfhjpbf
  • akv0mrndsp86pobc20qnbkap3e
  • rgrtbdtue9mu32sf70gqsjbe8n
  • v=spf1 include:acidefense.com include:spf.emailsignatures365.com include:spf.protection.outlook.com include:spf.zixsmbhosted.com include:fmfcu-org.spf.smtp25.com include:sendgrid.net include:spf.mandrillapp.com ~all
  • MS=AAB4D3374D7B54AD200542217BDD31F44F5B2AF2
  • tmrj05bu6cdtrr0o7h5tn68n4t
  • finicity_partner_id:2445584470153
Cloud / SaaS Services Detected
Mandrill SendGrid

Leak Screenshot:

Leak Screenshot