Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Liveaction inc.

Group: nokoyawa

Discovered by ransomware.live: 2023-05-23

Estimated attack date: 2023-05-22

Description:

LiveAction’s Network Intelligence platform transforms complex data into actionable insights, providing organizations with a comprehensive view of their network, from network and application performance to security. Enterprise teams can rapidly take action to resolve network issues at scale...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 18

Third Party Employee Credentials: 1


External Attack Surface: 9



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • liveaction-com.mail.protection.outlook.com.
TXT Records
  • eMNk1bqolN9VTtKYfVF+kw==
  • 270CF9ECE1
  • MS=ms25384074
  • v=spf1 ip4:52.11.74.134 ip4:52.211.233.151 ip4:54.70.224.32 include:_spf.salesforce.com include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:mktomail.com -all
  • google-site-verification=LOQlzl6sEBuoWjyV-FNldieC0Eyoy0SJqppz36pMrv0
  • MS=ms23030239
  • cisco-ci-domain-verification=2dde072d7db3be6f02cf3c0cb0c5290fee4845f40deba13f275b513079f2d8fa
  • google-site-verification=koTxyZ8HKG8ocLZGgN75kUrb4n94YiEgq0enhF4EUZI
  • ZOOM_verify_1vpxc3B_Sm-r8Lj7Sq1MnQ
  • atlassian-domain-verification=wF96co+LrzRyZyOHcG0+GsCkr/A1ekstBSNSNz8SMwdvXfFXUXZuki7aDzDkNLb9
  • google-site-verification=QNNynUeB3jWnislH820XPfXoA4mC2_mfssn0ev7mwpw
  • ahrefs-site-verification_627be80c4bbb346b727e33be281a99700e8920c670508917cffbe882f102d6b8
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Salesforce Marketo Cisco Zoom

Leak Screenshot:

Leak Screenshot