Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group: Coinbasecartel

Discovered by ransomware.live: 2026-03-19

Estimated attack date: 2026-03-19

Country: US

Description:

[AI generated] Verimatrix is a global company that specializes in securing digital content. It offers user-specific data security solutions across numerous devices and networks. Their services are primarily centered around video content, including live, streaming, and on-demand videos. Verimatrix's security solutions include watermarking, analytics, multi-DRM, anti-piracy, and secure delivery of video content.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 11

Third Party Employee Credentials: 2


External Attack Surface: 13


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaints@markmonitor.com
  • whoisrequest@markmonitor.com
MX Records
  • verimatrix-com.mail.protection.outlook.com.
TXT Records
  • ahrefs-site-verification_02f98f3cd45fb19c9f6456f43aaed9f8e231d4d4360cc229ed506ff3af9c4d37
  • jetbrains-domain-verification=7ez9n5yaqy105i0mgvp6hnh4j
  • status-page-domain-verification=rmfdmfv2z21z
  • 80sfb5chjrj9ofmqnqsi7kp02r
  • ca3-201070b788ad4e8d89df57996f78c239
  • amazonses:6EGaUQoOnqE9CHYjaVndbI6C5JmebXdQpqKd8n1XX2E=
  • drift-domain-verification=46d9fa1c02f078d23dd29dff2fcd2b2bfc2946398a9c87ce553ab11c53bd3dd9
  • openai-domain-verification=dv-JiS30djlR7j40Q3USOHzb6AW
  • amazonses:jf8zhz3v/PmcsviT5cwKv3AausUseN49PKVz68rEito=
  • bw=+dlHtgpR4c91ptSKF1ltvZ3h/2tf1Yp1mfnNB7tIEbVx
  • ZOOM_verify_alcn1nLISkqQUuwePKT7jg
  • yQtMB+F1q9TFr1WMeL8psBVLRis=
  • apple-domain-verification=98HGda5Cze9tzkWJ
  • +1DReLigRaRCTnoFaMAPm2Er2XqeYxh+eQwG80MsoH3xHY0/6ox5YfBI+CZAnEOIl7A7DCKg3yBH1T5p/CuCXQ==
  • 238ock3apo83f2ovssqirepdn4
  • logmein-verification-code=64ede1b7-10d3-4429-a377-ffdab69a87bf
  • ndk8tvusifu48ovfmi5sahre2o
  • google-site-verification=t6vtlSvj0VudkDGqUiT7OibsOs1LboZqz1fIssmO_zQ
  • asv=0545f2b4fe6419b00cd36f89e7b9f4d2
  • google-site-verification=2TfDDEqROUc3pxJTwHsz7KTPkJf_alWIyTV9SkzGdn8
  • atlassian-domain-verification=uVGu9R0rqwUElXKvKB8Yci6pCTwn1aXEsSk8Jb2K80rkC0uVXnySFfr1WeBT/W5D
  • MS=ms87311502
  • v=spf1 ip4:130.117.244.224/27" " include:amazonses.com include:mail.zendesk.com include:spf.protection.outlook.com include:_spf.salesforce.com include:_spf.elasticemail.com include:stspg-customer.com -all
  • 8aajuj36esjacmlm66d0c2iar6
  • ujdiudho0hpdd49thhf3ss8vi7
Cloud / SaaS Services Detected
Apple Atlassian Amazon SES/WorkMail Microsoft 365 Salesforce Zendesk LogMeIn Zoom

Leak Screenshot:

Leak Screenshot