Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo HOUSELOAN.COM

Group: clop

Discovered by ransomware.live: 2023-03-10

Estimated attack date: 2023-03-10

Description:

Cornerstone Home Lending



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abuse cloudflare.com
MX Records
  • mxa-005e1901.gslb.pphosted.com.
  • mxb-005e1901.gslb.pphosted.com.
TXT Records
  • logmein-verification-code=63cdde0a-42c0-4bf9-af50-0aa257f801b5
  • 5ccmgpp76f087jn9755cc2d5lq
  • atlassian-domain-verification=3E1mV8fTsZFIIhi/t7zOKV3je3b4ZVQynaFe9GdgTb6nhCS1yFrGFs63BBjHk8j8
  • c4c2h7w8t44d7q81dxczzf4btcr7dl37
  • v762fvfj421e5b7rgg9ekfb9r4
  • 90n4fb38rx4hstn95rwjjk4n8t201y9f
  • rbptbs6qst2m1p61gfljdsnv6l
  • blkohd9sdqmhhsq3db1e1g686c
  • s44tn656i0bqhugkuthesvatgq
  • dol8a0q7gi12f6h4iahf3lr7um
  • u4opgkibmqav8d19gmv02e7kps
  • 9dm3e7ojen4rb3m3rnsv383ger
  • f0ejghlmbsd4p7of6jlr3ehkoi
  • p2q0cdhc6tt9bg3qucicikd030
  • cd8jusf3rs6qgdjn6i6imai8d5
  • b3vtca3s56ljlpe8u3kfjjracl
  • dfb2cts61gjrui8t66693gb94s
  • p999nqvm2opqcs03eeh85pciag
  • zapier-domain-verification-challenge=fdfdfce6-8d60-4aef-ae7f-39698707008c
  • f7v70m3t9auore806i1ub2lgon
  • mtadsce5sqr12k1gnmes8n4o9u
  • qiiav7g36p5jae6ac5ni384nhn
  • 52p1kggqpg8ctdpnqudsalitpk
  • e34e2h2p8h9kmufp8v6js36pli
  • v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf.braintreegateway.com ~all
  • 5v0cdud9nu5bm92gtoq4ejk34n
  • isq9o7ppnrfpemk7hpf2k2rl40
  • b0cmhaoun8jibpp8m3lbllq1vd
  • b0ikb8drg0n298ovt752ce3bpi
  • 376rtrbgsh2dka5i3ghdl7eflq
  • fjlyvhw83dkbn880mvy15674rnjx49rw
  • ko2vom740mnhcb3ec41eft7rds
  • u44l4f3fsg8p9m4ppsjvnntasd
  • logmein-verification-code=6e240db8-170a-45b1-840d-6312c34b83d7
  • _lq3a8o9nrkp29zvjv5n1gsi7s0n53hf
  • evvn35ih6dst28jqd6equm0pc8
  • eok8c7avd9vngsoa3t83orvvg1
  • 7d3i0gmrvrnar4fvpqjlmkdfd0
  • 6lt3ibdt12r2ms35eoubkqesug
  • 96h67l5daamki4s03e60kdmlll
Cloud / SaaS Services Detected
Atlassian LogMeIn

Leak Screenshot:

Leak Screenshot