Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Frontier

Group: ransomhub

Discovered by ransomware.live: 2024-06-01

Estimated attack date: 2024-06-01

Country: US

Description:

Visits: 9 Data Size: 5GB Published: False


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 799

Compromised Users: 5075

Third Party Employee Credentials: 1328


External Attack Surface: 179



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mta7.am0.yahoodns.net.
  • mta5.am0.yahoodns.net.
  • mta6.am0.yahoodns.net.
TXT Records
  • google-site-verification=JmS6XJz2pxhSQB9cHrisyk5sMj7YJZJs1MM5SnYWKr0
  • f8rdlck85rpl7n47kstt9w8h9g7rd27z
  • activeprospect-domain-verification=24pVjyhg1dr0CUCbKY+4Bg==
  • google-site-verification=gA72v4zRJ-xygpAXJQH1Y81dAiafbcQqt3QQ1VLw5eE
  • pardot1055133=373547fcf00549550468f8e51a723dcf274236175d563fc155243344946559bd
  • pardot1055133=90b02c37048de4cc4bb97fda072b8452a08bf70f55ae2093e17bd29495d05f8a
  • globalsign-domain-verification=TxvcU3udakzKTnDbubA19wNKSdAi7u0-_xppPLKFsA
  • v=spf1 include:_spf.frontier.com include:_spf2.frontier.com include:_spf.mail.yahoo.com include:sendgrid.net include:mktomail.com include:icpbounce.com include:_spf.act-on.net include:rs-relay.synchronoss.com include:spf.postal.nudgepro.tech ~all
  • google-site-verification=meOwTinl9oSn_VoO-i7iXA2WgA2R-8Mf8CbGcbcgFNE
  • google-site-verification=WLaFhLnD2XP1ovzDuhYYsqzqXThcD7ob4eZlFg-HUT4
  • google-site-verification=t5ZStsjmVOyBQX0lUepwXwslIv-HZgZ_3btf3XQ2zsw
  • NDcOEJ8Yuv6QHVP08ZNTDZ_6x_bZ2XkAkNVLfQF_RpY
  • pardot1055133=991ff57c7c8b2215b2ccba0785465dab6c9ab18598fe6c9e14d0715d031c47bb
  • pardot1093572=37b258d173164d98927b579d2a7b716c05ab859d422b3b043c2aae77ffd49636
  • google-site-verification=sdgS_M3-27eGHgYi_qgY6G1S9A_rKjCuhREOHcuDQ6o
  • google-site-verification=HO99esz34-HryNReqK2HpAmCxDm7UWccisBjXA3RVOc
Cloud / SaaS Services Detected
Salesforce Marketo SendGrid

Leak Screenshot:

Leak Screenshot