Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo IDeaS.com

Group: Everest

Discovered by ransomware.live: 2026-01-05

Estimated attack date: 2026-01-05

Country: US

Description:

[AI generated] IDeaS is a global technology company specializing in revenue management solutions. They provide innovative software and services for profit optimization, forecasting and pricing to businesses like hotels, parking facilities, and rental agencies. Using advanced analytics, they help clients make data-driven decisions to increase revenue, control costs, and optimize business operations.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 5

Compromised Users: 38

Third Party Employee Credentials: 13


External Attack Surface: 58


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ideas.com-Admin@anonymised.email
  • ideas.com-Registrant@anonymised.email
  • ideas.com-Tech@anonymised.email
  • abuse@comlaude.com
MX Records
  • ideas-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:_spf.ideas.com include:_spf.sas.com -all
  • pardot398202=da114e546eff8f3c9ac3019691293283a4ecd60c22307d19710fe55d8ab160a1
  • adobe-idp-site-verification=45358c6f-c63c-4cfb-ba72-5765ab46bfa6
  • fd3c8s7yp9sX3LQPOM9ysajJ1vPD8a+9OBxx7FZMxcBiqMYYaO8+JbcAvknT99vcgRqUj0X08aZnFiMRF0PodA==
  • docker-verification=6bbc8c54-1de1-4020-8a24-3ad0b17a1045
  • atlassian-domain-verification=eB1rMsC+WLTei9O3RBNlKkUFc772ul4oqxiIiPhXP8+9rXhB046rEoLGRhxfru2g
  • docusign=fcb30aaa-3dcb-4725-a5ef-cb5e8003cefd
  • google-site-verification=yHHLeFbYNVjtQ-BNxt-nqo6_69_7UiPrhZjXu0QM3KM
  • reachdesk-verification=zCOESmAIpFy57YsPsYwvb0WDKWsJokziKcXd73dEqMVFt8ALNNsfrybCVpHpXhzB
  • mongodb-site-verification=SCfwZDnEDkR5EpMaQYBHCGLTTVbbL4ur
  • 6a54371a3c134e4abc30bac907b14763
  • docusign=2ee69c31-4477-4eda-90ab-f5e5fbbcb15d
  • atlassian-domain-verification=GRomroaPE7T0Ket99nuYwdz7hBlqaD5ZvOUnLXbfxiKoWJD4yf2K5daPc9RZocIx
  • apple-domain-verification=hXJQoo9ralc73sQN
Cloud / SaaS Services Detected
Adobe Apple Atlassian Salesforce DocuSign

Leak Screenshot:

Leak Screenshot