Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

SYNLAB.FR

SYNLAB.FR

Group Clop
Discovered 2023-06-15
Est. attack date 2023-06-15
Country FR
City Paris

Description:

Le groupe SYNLAB propose une gamme complète de diagnostics médicaux innovants et fiables pour les patients, les médecins en exercice, les cliniques et l'industrie pharmaceutique.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 4336

Third Party Employee Credentials: 2


External Attack Surface: 55


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • DL.FR.03.GIE.IT.INFRA@synlab.fr
  • registryinfo@eurodns.com
  • staff@eurodns.com
MX Records
  • mxa-001bf101.gslb.pphosted.com.
  • mxb-001bf101.gslb.pphosted.com.
TXT Records
  • brevo-code:2c93de8bc5a4f77684662d4bf08f9eb2
  • _globalsign-domain-verification=D2nkKbqUITet0gMhzYieohePQSZTQs3pJI7ReIrE1j
  • _globalsign-domain-verification=oWSl9yC7dh_G6r9SsEEUPoyV1IBiyNE__zvmAxmH3u
  • google-site-verification=rdsCM2T42Qb5TdFSdQn-kKMRsZ-lgzeNCufXQiuc4lE
  • QuoVadis=de7ffe9d-4456-4cb2-bf9e-8254cac9588e
  • ZOOM_verify_xNxiimKKQRGko4yVsjaXFQ
  • AGOoGdZdvQTfUNerRa6aUCID+52OisgVs3AmMkYG14o=
  • MS=ms92889321
  • dropbox-domain-verification=p6d7dot8funl
  • v=spf1 include:spf.mailjet.com include:synlab.openhost.cloud -all
  • docusign=49aaff72-c820-4a15-b908-b3c114c8fc1c
  • _globalsign-domain-verification=B4GNAPE-lkZDpz8_hiDY-tS2BYp8U9q0xhvItOXTW4
Cloud / SaaS Services Detected
Dropbox Microsoft 365 Box Mailjet DocuSign Proofpoint Zoom

Leak Screenshot:

Leak Screenshot