Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo H + G EDV Vertriebs

Group: blacksuit

Discovered by ransomware.live: 2024-03-09

Estimated attack date: 2024-03-09

Country: DE

Description:

H + G EDV Vertriebs is a company that operates in the Information Technology and Services industry. It employs 51-100 people and has $1M-$5M


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 4

Third Party Employee Credentials: 0


External Attack Surface: 2



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • hug-de.mail.cloud.nospamproxy.com.
TXT Records
  • jNFnARAbf6kYLfyOUWCbz1TyzICTrT1bCvFczIwKvPM=
  • 0FhI1HyEHYCWjYnOHmwmWhGMqtrGMc4WgiELbRu26XzWZX+TbSw9fL7PSIS9i4+FUSk3XECUBFlRPDmrs3Yx9g==
  • pexip-ms-tenant-domain-verification=34a2ab61-1250-4528-a15d-35a344c6a68d
  • MS=ms56334357
  • v=spf1 a:mail.hug.de a:kix.hug.de a:mailgw.electronicsales.de include:spf.protection.outlook.com include:cemsc.net include:spf.hug-de.cloud.nospamproxy.com" " ip4:5.45.181.192/28 ip4:212.117.90.128/26 ip4:213.196.233.64/27 ip4:194.8.213.37 ip4:185.88.212.50 ip4:5.45.176.13 ip4:5.45.179.66 -all
  • apple-domain-verification=GWukRnJyFcbDTWJw
  • globalsign-domain-verification=3F9E8DC5178249FA843CB79CD6F5B615
  • ms-domain-verification=6c78e099-1389-4961-a75f-c4d6053097a5
  • teamviewer-sso-verification=b42ea978a39a46a78dde6cde3cabaf05
Cloud / SaaS Services Detected
Apple Microsoft 365 Teamviewer

Leak Screenshot:

Leak Screenshot