Sponsored by Hudson Rock – Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Discovered 2026-09-30 13:04 UTC
Est. attack date 2026-09-30
Country FR
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

Expert accounting, payroll, legal advice, audit, online banking (Fiducial Banque), IT solutions (Fiducial Informatique), office supplies and equipment (Fiducial Office Solutions), security, and asset management.

Infostealer activity detected by HudsonRock

Compromised Employees: 6

Compromised Users: 785

Third Party Employee Credentials: 4


External Attack Surface: 105


Infostealer Distribution

Exposure Report
by ParanoidLab
5155
Passwords
58 critical
876
Cookies
0 critical
Last queried 2026-09-30 13:04 UTC

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • dns-admincscglobal.com
  • nomdedomainefiducial.fr
  • tldsupportcscglobal.com
MX Records
  • mx07-001f2101.pphosted.com. Proofpoint
  • mx08-001f2101.pphosted.com. Proofpoint
TXT Records
  • google-site-verification=0ab4ZbsRMtLlTpfoC2P5duXFKr45nPnJuJNbG3inPos
  • v=spf1 include:spf-001f2101.pphosted.com include:spf.sendinblue.com include:spf.mailjet.com include:spf.fiducial.fr ip4:141.94.248.166 ~all
  • mp75ud9auiidueq4hrm9k5v6n5
  • rhpc6rag7bfir31f1r9eonqdjb
  • MS=141B451CBE1251FCC0F86DB7C09D6EC2C22EB44F
  • Sendinblue-code:95094f58a7374dd42c7367a023f6cfb6
Cloud / SaaS Services Detected
Mailjet Proofpoint Sendinblue

Leak Screenshot:

Leak Screenshot