Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo KOCHLOGISTICS.COM

Group: clop

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: US

Description:

[AI generated] Koch Logistics is a worldwide logistics service provider based in Minnesota, U.S. The company, a division of Koch Companies, offers a range of services, including transportation, warehousing, and supply chain management. Their services extend to truckload, less-than-truckload, international, intermodal, air freight, and ocean shipping. They serve various industries such as retail, food, and manufacturing with a customer-focused approach to logistic solutions.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 6

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • kskqrseachre4tkgdkit2t7re6
  • MS=ms23679568
  • v=spf1 mx ip4:4.19.76.4/26 ip4:72.21.242.36/28 include:us._netblocks.mimecast.com include:sendgrid.net ~all
  • fejpokmardnj69d6tgionak2p9
  • teamviewer-sso-verification=9f494b59a8a74160bc3e429a924cd37d
  • u6icrohgm0bp9fm56er1dqu9e5
  • LymlKpn/jIVgDe8SmlgAX4HYxSPhBm6YKNWgDWBNlfId5yQX/RtVR+xz1+KY7wjGgcwVICma7/EYjkRLgBg48Q==
  • uhf514l391leae9lsh81i43foa
Cloud / SaaS Services Detected
Microsoft 365 Teamviewer SendGrid Mimecast