Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Malaysian Industrial Development Finance

Group: rhysida

Discovered by ransomware.live: 2024-04-07

Estimated attack date: 2024-04-07

Country: MY

Description:

Malaysian Industrial Development Finance MIDF, established in 1960 and based in Kuala Lumpur, is a financial development institution to modernize Malaysia's manufacturing industries.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 89

Third Party Employee Credentials: 1


External Attack Surface: 10



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domreg thegigabit.com
MX Records
  • midf-com-my.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:_spf.mlsend.com ip4:202.122.157.34 ip4:210.19.245.210 ip4:175.140.164.162 ip4:210.19.123.74 include:spf.protection.outlook.com -all
  • MS=ms72935299
  • google-site-verification=E1QwseHIYEeEUFZLvGRyX0MLHp2fH1gRNcQruQUdCfk
  • _globalsign-domain-verification=rySrqsW6e6yIbcrTjupy7b-C9qXNCIE_V0Mc2Z2RhW
  • MS=4E22D8712FC800B238EDA13D8CA1DD8F95D74F2F
  • globalsign-domain-verification=eOHxRkrgIMz3-PuvjuM-lNC0UANtr53KOtlm4aH5E8
  • _globalsign-domain-verification=K2k6oo2a1ztdB7b73iZOjTkw9CLwDRUXgnVuNwbwiI
  • fdnxhfk343wb7q3vx028jb2x6lm74n62
  • _globalsign-domain-verification=v3BzQUi2t9VEop1xbRgCPuyzVBamImMAWkYDrQzBgh
  • DDIPSQSA55ERSDUFUFIRO50STL
  • elfb4r05jdosaohfatpl3j6u4n
  • globalsign-domain-verification=eOHxRkrglMz3-PuvjuM-INC0UANtr53KOtlm4aH5E8
Cloud / SaaS Services Detected
Microsoft 365