Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo National Business Furniture

Group: medusa

Discovered by ransomware.live: 2023-03-09

Estimated attack date: 2023-03-09

Description:

National Business Furniture (NBF), founded in 1975, is an office furniture manufacturer headquartered in Milwaukee, Wisconsin. The company has additional offices in New York, Chicago, Los Angeles, Atlanta, Dallas, Phoenix and Seattle. In 2006, NBF was acquired by TAKKT AG, a leading direct marketing specialist for B2B business equipment in Europe and North America.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • v=spf1 ip4:3.208.0.112/32 ip4:3.92.101.169/32 ip4:204.152.150.209 ip4:164.138.221.186/32 include:us._netblocks.mimecast.com include:autotask.net include:spf.protection.outlook.com +a +mx include:mail.kan" "banize.com include:_spf.salesforce.com ~all
  • adobe-idp-site-verification=14c869502761fb230cb5e7863d19515ce6ad38316c1e585856638a3bc90f0b17
  • xCVpuwudQ1jGFnCMj4k3RsYhWezprHZKhu9s8/F7iWDPW5C3JTyfRI8mDw5329OQ8bsvweulzhZkrLAReTsc8w==
  • lfFXKQsCKrI5kQ9CJe6yntA2u1vDxfelHhzWfqieFtNe2C4MWw5TByfOOW0JXVGUubZAeUspJM1NFfA3nhcCjg==
  • 851869513-628551508
  • U8mHS2XbthT363aEFpHoY5T0rRep7VtBv3Vy/cNjO8jFAqJeQRT5l0dYJ8+zXNUXTjJ3QL23TILGyntOA2/X9g==
  • MS=ms36927767
  • biegu6msg52jn6dl0bv89u7kbf
  • 260gsh07vp8kjl9q0f1xzb6hsjl59778
  • kr5759b319k818588sgpwy00277l14bx
  • knowbe4-site-verification=ae04b275cbcb55e971942521d784c3f0
  • calendly-site-verification=TQxT96zvbLXNjhz64O1TPmBvHOPgq8jUFp1jWPsWz
  • apple-domain-verification=bn2Ud57aS5wNiSgC
  • google-site-verification=YUY5zzMnVCHMZYNcU8Y5Fbxw417gsaVZYPsF6HIUONA
  • _j5ywjfayxmxp9pez77t5d1hlmonj093
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Salesforce KnowBe4 Mimecast

Leak Screenshot:

Leak Screenshot