Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo INDA's

Group: play

Discovered by ransomware.live: 2024-07-04

Estimated attack date: 2024-06-29

Country: US

Description:

United States


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 8

Third Party Employee Credentials: 0


External Attack Surface: 0



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • inda-org.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:mmsend.com include:spf.mandrillapp.com include:mail.imismailcenter.com include:spf.constantcontact.com ip4:4.18.206.170 ip4:4.18.206.172 ip4:64.71.128.226/28 ip4:104.16.130.63 ip4:20.231.103.244 ip4:205.20" "1.128.0/20 ip4:198.2.128.0/18 ip4:148.105.0.0/16 ip4:205.207.106.0/24 ip4:208.75.123.0/24 ip6:2001:470:1:78a::2 ip6:2001:470:1:78a::1e ~all
  • zapier-domain-verification-challenge=cb50a937-b1c7-47d7-ba11-def06c7ab963
Cloud / SaaS Services Detected
Mandrill

Leak Screenshot:

Leak Screenshot