Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Sercomm

Group: hunters

Discovered by ransomware.live: 2024-11-13

Estimated attack date: 2024-11-13

Country: TW

Description:

Country : Taiwan - Exfiltraded data : yes - Encrypted data : no


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 14

Compromised Users: 26

Third Party Employee Credentials: 7


External Attack Surface: 34



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafety support.aws.com
  • edfe217c-0784-4f25-9722-cae852cc07c2 identity-protect.org
MX Records
  • sercomm-com.mail.protection.outlook.com.
TXT Records
  • MS=ms70520834
  • _globalsign-domain-verification=OabtOvdgkg3Oq6O0-NTdDOrrXV1gbRcuRELUKYBUNf
  • mm0gjmclnv4p703os28qooqjfg
  • Public-CA-domain-verification=5C03FEF122D8B6350C5A4175FA2CE5F8
  • fc28kugvc0hs9bk5hb7m363b00
  • MHE2N5J7P2FVF80T2JQE5K55NN
  • od5215th5gb4cbjc0gsciq76u4
  • ca3-b71fac253eb343649c081d1124a28880
  • webexdomainverification.19XI6=b92c8a02-792e-43e6-b97c-9d9e8be6d2ee
  • 8NET3GWBCVD719TK92Z178XOYTQMQD7UJY3GR4UE
  • wdg5t73Upl9ao2GCzfA43qYngxZPu+Flcoh1da95G+M=
  • tDOJKLaYpcSWTrRUX2UBQV-cO_6Ec4nSkyfSeBsxsfI
  • _globalsign-domain-verification=qj-v4dONkGm_WYE8x5tHdG44AgHNzHvltaN2cxZ4f4
  • mkf07r9g7nfdod9ripblnim451
  • Public-CA-domain-verification=507E613E48EED415D3A6218ED416D1F6
  • RD5o8HLkvgga05R5NcYZowtkoG9iwHouEAFinsy6hwY
  • _globalsign-domain-verification=bu7W4T3zbrTI8jtcHrl42M0q7_NVHac7yOAx5iYyVl
  • v=spf1 ip4:118.163.130.185 ip4:122.146.11.200 ip4:122.146.11.202 ip4:222.92.90.168 ip4:3.81.182.154 ip4:3.93.155.149 ip4:3.95.118.12 ip4:3.95.142.181 ip4:54.227.64.76 ip4:52.12.169.124 include:spf.protection.outlook.com ~all
  • c5oeqn4sicsu39tpnqnktn30fe
  • pp93akudsqshu7tves8kd3imic
  • webexdomainverification.M3M0=88713ebf-7668-459c-8ed9-d0f0f9cff38b
  • edhdnsjamru4hqrhgh8o5q6n61
  • sfpqfsl3e9oqq1rl1sf5rlhb48
Cloud / SaaS Services Detected
Microsoft 365 Cisco Webex

Leak Screenshot:

Leak Screenshot