Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Spandex.com

Group: ransomhub

Discovered by ransomware.live: 2024-06-29

Estimated attack date: 2024-06-28


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 675

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • de-smtp-inbound-2.mimecast.com.
  • de-smtp-inbound-1.mimecast.com.
TXT Records
  • atlassian-domain-verification=yWodn6ot1NmF8NJFwgXge6K1UnhfoMW/4R7BkC/qGTjx4/90LBupFsiorfQtCo7/
  • docusign=3f5c7186-4a39-4ad3-bc51-54baff28406c
  • facebook-domain-verification=39xb7p0oolz63a4a88fcx3vgrbm52z
  • google-site-verification=8Ur8qeRkNNujUTURaSKYN5cbooCPRUZyExSC6ctPsMo
  • google-site-verification=lH38yMGK-8LBFlsGHUsM_-RCaOll095ModGK4aEkHHs
  • v=spf1 a mx ip4:37.59.128.2 ip4:37.59.73.34 ip4:185.6.180.72 ip4:213.246.216.0/27 include:_spf.act-on.net include:de._netblocks.mimecast.com include:servers.mcsv.net include:_spf.emaileri.fi include:_spf.cmail.ondemand.com -all
  • 0ed1fe018a13850acc283f48c0ab6d4c57f08860db
  • MS=ms93864547
  • ZA=br91k+uiQ0O4svbtgZEocw==
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Mimecast DocuSign

Leak Screenshot:

Leak Screenshot