Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Prudential Financial

Group: alphv

Discovered by ransomware.live: 2024-02-16

Estimated attack date: 2024-02-16

Country: US


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 36

Compromised Users: 2945

Third Party Employee Credentials: 67


External Attack Surface: 126



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaints markmonitor.com
  • whoisrequest markmonitor.com
MX Records
  • mailgate6.prudential.com.
  • mailgate7.prudential.com.
  • mailgate8.prudential.com.
  • pa-mailgate.prudential.com.
  • pa-mailgate2.prudential.com.
  • mn-mailgate.prudential.com.
  • mailgate2.prudential.com.
TXT Records
  • globalsign-domain-verification=BB907CD13BD7D2DF521C22EA961CF474
  • jamf-site-verification=YIvogH-A3-GMLx0c_7nhmw
  • Dynatrace-site-verification=5077446c-7c88-46c3-807f-c4e99fac95f9__igfbtp43vnb292tgg5rd0vmhpn
  • _owcp5u0pb6jjqulbo9h4nfka8qsnu9m
  • docker-verification=d2793253-9e38-4e0e-998d-d12d7ef28f9d
  • _6rikbi5pg6k6vx2zdo2ggree9zlx3xg
  • flexera-domain-verification-zkmwsgxsvdcjcesa
  • ZOOM_verify_CBkRYG9OTj2k4NK7QSXRxg
  • liveramp-site-verification=YomFX5OTGlJpYQpE-eX7xjsHhecKdE9TpKq-cwff1GI
  • _wphndfxpn70mbdjag5l7o4hstavrw9n
  • MS=ms90916092
  • apple-domain-verification=TOxoqR7NDSQ70rC1
  • docusign=59017324-3db2-4d24-aa49-0723f0615513
  • v=spf1 include:spf.prudential.com a:mail.investran.infinity.com include:spf.protection.outlook.com include:spfhost.messageprovider.com ~all
  • apple-domain-verification=3OIQapuLYuTYVH0A
  • _6vqns0iwlw47vh17mnojfu4qcxew2mo
  • atlassian-domain-verification=eISVx4rCV1NivCTElZ0wMiYNramaZvYsRnqbvpDVI0tOjjlnm19SeahcOm0Zq4ec
  • h1-domain-verification=7PVoM2gCLAMwEMZWEvym64nQKW8VHPPtraoW7oQqRCvVte9E
  • adobe-idp-site-verification=bd4f8de40219d4e4ea55857eca507e5eb42ea77a2756ecaf4f689cc367c97850
  • SFMC-yFp7Spq6DYIhBW2qEh7uTiUZ8VlhFxdKlGWkHw-r
  • infoblox-domain-mastery=f35f325af5425044debfecfc3a93a34984f4ba673f32e91cfbcd5f953e79d33771
  • cisco-ci-domainverification=35c4598d3a87e5dd411b220a8f1b606a774a65ae60475430e63687c8d2366d84
  • adobe-idp-site-verification=380b8cba8934dbe70ff27e545d1ab914b67cd04a74e6ad13cd009bc1918fb744
  • _31rw7rhcl2h4dl14difhf2yrquwg4ri
  • FZH89DZAYBRSHZQ5TNE5NQ001AE6AKO1FPJZBLE7T
  • google-site-verification=nF0nJ-ozveu9UjWQyHyYuL1Sk2YD3kBMsHTtxpGHSqE
  • onetrust-domain-verification=66ad9a736cc546ac88e1a3db4ef7c3da
  • globalsign-domain-verification=bae6c1ec4c7b984442ebd2ca20015315
  • _gciyorb1aehb4ozpp3u5bq6kv3jvzvq
  • ibmid=89934b80-0997-437f-b962-c4926ae1ed63
  • globalsign-domain-verification=E7B92715609568CAA16CD2706B361FBD
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 Flexera JamF OneTrust DocuSign Zoom

Leak Screenshot:

Leak Screenshot