Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo IT-Center Syd

Group: rhysida

Discovered by ransomware.live: 2023-09-09

Estimated attack date: 2023-09-09

Country: DK

Description:

IT-Center Syd IT Center South is an operations center for an administrative IT service community consisting of several state-owned educational institutions spread over 11 land registers around the region of Southern Denmark. More


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 75

Compromised Users: 15

Third Party Employee Credentials: 0


External Attack Surface: 15



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • itcsyd-dk.mail.protection.outlook.com.
TXT Records
  • HARICA-4iBXRGpvdRlnfdcaLOL
  • uhaqSLEnGqTIyvnn+TVgBBpQWtIEbV1iq8oLP6Bs94MePy1WNtgEwBvadq1n1MTrFIXEhLgDUBMx9mXmrpD5zA==
  • apple-domain-verification=hr4qiXVdDlWnsIjp
  • /cV6bvF8GaGBFcimvt59mbrF3ybF6TRj8YA85I+kEeA=
  • _globalsign-domain-verification=wN2qNrlWoJgaio0qUMyygZMYUAsVYCe5C0YUGo0y0-
  • v=spf1 ip4:46.32.40.41 ip4:94.138.76.52 ip4:94.138.76.44 ip4:89.184.150.166 ip4:94.138.77.92 ip4:94.138.76.180 ip4:212.37.142.20 ip4:212.37.142.28 ip4:89.221.167.132 ip4:185.16.17.219 ip4:185.16.17.220 ip4:195.231.242.115 ip4:40.118.61.36 ip4:83.91.91.0/2" "6 a:massmail.scannet.dk include:spf.protection.outlook.com -all
  • adobe-idp-site-verification=a598b82bd9bdc757d617697889f923f6d7713c1b05bd2c5918159a10c44fc6ec
  • uvmid=537401
Cloud / SaaS Services Detected
Adobe Apple