Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Fox Rothschild LLP

foxrothschild.com

Discovered 2026-05-28 18:20 UTC
Est. attack date 2026-05-28
Country US

Description:

[AI generated] Fox Rothschild LLP is a national law firm headquartered in the United States. Founded in 1907, it operates across numerous offices throughout the country, providing legal services in areas including corporate law, litigation, employment law, real estate, and finance. The firm serves a broad range of clients, from individuals and startups to large corporations, operating within the legal services industry in the United States.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 6

Third Party Employee Credentials: 8


External Attack Surface: 6


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • us-smtp-inbound-1.mimecast.com. Mimecast
  • us-smtp-inbound-2.mimecast.com. Mimecast
TXT Records
  • 12tmafiosfvhke6bggkid2n8a5
  • @MS=ms79569755
  • smartsheet-site-validation=S-pyoFVEIGmhGPd9CLzO4XTxuB3dX7UR
  • apple-domain-verification=1J9l9vc4208hwr4I
  • 2E438E883EFECB70F46DD9C1C65B9B6EDCCE6487B9862CAD9FCF938C71757088
  • 17p9un5tce5d5sotqk4nad46lq
  • intersight=2602c03abca8df6bf40494c2bce2bba59f826e06256146441a3cdc50ad0147bf
  • have-i-been-pwned-verification=6f320e5d363916419d57a6c7e8791880
  • soqain73kk3qarfm77prv82gkv
  • t37o5kra2uff6pjudi3hfhfhrr
  • v=spf1 include:spf.protection.outlook.com a:vx-email.com a:smtp.ultipro.com a:smtp.viglobal.com ip4:107.20.210.250 ip4:52.1.14.157 ip4:107.23.16.222 ip4:65.56.145.154 ip4:198.2.185.138 ip4:54.173.83.138 ip4:20.75.130.37 ip4:20.75.130.182 include:us._netbl" "ocks.mimecast.com include:servers.mcsv.net -all
  • 7vbtoj8sdpmusnj643pv4807cc
  • 8z5mQYJvFfAuottD81t++7SKuFF13MC5TAeF2jX9WQKuLeThsccCntW+37xN6KKu97HplmsX3zEbsEM+5KbjvA==
  • box-domain-verification=4095e19836bbb54eb4ca8bcf0dfd97ec03e41fa7c976811c29de83ab9682761e
  • 91r6l09cgesomca80f8972chmh
  • 53i6b32uq0bjgufpoqnu66l9n2
  • atlassian-domain-verification=qctUZdcaLPsJbdMZYjsUa1JWW7UT7la17bfPv6Nh/CTvLaUG2DpUpYN2y4/AVwgJ
  • ciscocidomainverification=77e786fa2b9a5daf378b4e111ca8a0538a729055de3f378f5b23f4d239c7effc
  • b703osft1pmtjoh239a4f54u7t
  • docusign=b26db683-e1d7-4165-91b2-96431cdcbe5c
  • appspace-domain-verification=9ceabcb0c6ccc080902c72bfa348f5a98cf77bfcf54c867c1417a78442e1a7df
  • gt8mm2ch90iiuug7tbmgh6of0r
Cloud / SaaS Services Detected
Apple Atlassian Mailchimp Microsoft 365 Box Mimecast DocuSign Have I Been Pwned