Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Publishers Clearing House

pch.com

Group Anubis
Discovered 2026-04-01
Est. attack date 2026-04-01
Country US

Description:

The fall of a sweepstakes giant.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 12755

Third Party Employee Credentials: 29


External Attack Surface: 101


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • pch-com.mail.protection.outlook.com.
TXT Records
  • _lqtu5tay2rklk8n00p67wf6tk33upk6
  • google-site-verification=oR6JfIJ0gVENoBs5irqqo-_NFKpwx_vGUR8buolZCEY
  • _32wm42o328kee7dh73dyv598oufidsx
  • rippling-domain-verification=c3df31591afc3604
  • jamf-site-verification=MhqLzRgAUNmV4QTHj-NJew
  • protonmail-verification=2b6ee5eb144516d008f64e1eb89247c74803ccbe
  • anthropic-domain-verification-z63aj6=TASmtgTid1SERvQefspUiI3YG
  • google-site-verification=_uQqFlTa5kMFQrXPanJpFD9-ZCPULUYUTjwJKj_GDfY
  • google-site-verification=rJry0viA9-sX-XXLIAj_NHeyasV94eJ4lSk8FqBkEr8
  • airtable-verification=df4ae1778ab9f4324afa8dd1f21782aa
  • extensis-domain-verification=8f53a34b-7a2b-42a5-9367-c825c59a15ae
  • twilio-domain-verification=f274333f98eae5d45ccc6f867a62271b
  • v=spf1 ip4:129.152.0.0/17 ip4:170.146.220.0/23 ip4:174.129.15.10 ip4:216.255.103.0/24 ip4:199.231.132.172 ip4:52.205.20.144 ip4:208.185.229.45 ip4:208.112.39.158 ip4:52.72.16.225 include:spf.protection.outlook.com " "include:spf.dynect.net include:spf.constantcontact.com include:rnmk.com include:mail.zendesk.com -all
  • google-site-verification=qdGIuGzwcFOUWVWDl6Xek8dLHSRR_PMd67x8pZoyJQI
Cloud / SaaS Services Detected
JamF Proton Zendesk Rippling Twilio

Leak Screenshot:

Leak Screenshot