Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Sub-Zero, Wolf, and Cove

Group: medusa

Discovered by ransomware.live: 2024-09-30

Estimated attack date: 2024-09-30

Country: US

Description:

Sub-Zero, Wolf, and Cove is an American brand of residential major kitchen appliances including refrigeration and preservation products. Sub-Zero, Wolf, and Cove corporate office is located in 4717 Hammersley Rd, Madison, Wisconsin, 53711, United States and has 2,648 employees. The total amount of data leakage is 760.60 GB


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 76

Third Party Employee Credentials: 0


External Attack Surface: 21



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mxb-000a9203.gslb.pphosted.com.
  • mxa-000a9203.gslb.pphosted.com.
TXT Records
  • rbE5W5rbIfRfO7KN3B84KaJIUGcuXfldGvsCSLlq/fJxiTYaWJIZaYTwVM/EaDgv1jR8ipA5olEPryuueqgoXw==
  • MS=ms30053487
  • adobe-idp-site-verification=6214428fb370e95ca3bb0d97a24585077f0b4928bdbf8af9cc6363d3ac8715a7
  • google-site-verification=fbx3ebIOr-rt-xzHNlm6h8gbhV6ajcPWl60vXthkPrI
  • google-site-verification=Z6l-xFVxLKsGwyJjoAetUBf8fBAKq4-dbKY7-Uzz26E
  • google-site-verification=E2iMvzT5ix_SRpQxDFFBq-w9ZoR-PQCdOWTng3YnH3A
  • fastly-domain-delegation-875874-2025123
  • google-site-verification=_bZx1cILyul0hQXRuwOUzcHqTH_uT9xmPfANB-d1JXE
  • v=spf1 mx a ip4:198.51.76.100 ip4:208.185.229.41/29 ip4:35.80.141.6 include:spf.protection.outlook.com include:mktomail.com " "include:servers.mcsv.net include:mail.nexusdigital.net.au include:spf-000a9203.pphosted.com include:amazonses.com include:tmsmail7.csod.com include:em1899.subzero-wolf.com ~all
  • google-site-verification=eMbCF7aHRzENtK1CvAclcVp8Da6swLMQv78hK8Q6E8s
  • cc0266a4a95345d686c84240e4ac640f
Cloud / SaaS Services Detected
Adobe Amazon SES/WorkMail Microsoft 365 Marketo Proofpoint

Leak Screenshot:

Leak Screenshot