Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ZANACO.CO.ZM

Group: Clop

Discovered by ransomware.live: 2025-11-07

Estimated attack date: 2025-11-07

Country: ZM

Description:

[AI generated] Zambia National Commercial Bank Plc (ZANACO) is a major bank in Zambia. Founded in 1969 by the Zambian Government, it was initially designed to promote national interest in the financial industry. Its services range from personal and business banking, digital banking, to investment banking. The bank caters to both individual and corporate clients, striving to contribute to the country's economic development through innovative banking solutions.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 18

Compromised Users: 575

Third Party Employee Credentials: 14


External Attack Surface: 50


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • admin zamtel.zm
MX Records
  • zanaco-co-zm.mail.protection.outlook.com.
TXT Records
  • MS=ms22905935
  • ns4.bdm.microsoftonline.com
  • rovag_verification_token=E28CA4A774EB459DA4EED82855A197FF
  • ns3.bdm.microsoftonline.com
  • ns1.bdm.microsoftonline.com
  • v=spf1 mx a ip4:196.41.74.137 ip4:192.254.121.248 ip4:196.41.74.50 ip4:41.175.25.218 include:spf.protection.outlook.com include:_phishspf.knowbe4.com include:email._domainkey.zanaco.co.zm include:mailgun.org -all
  • UlWpOswjfPVu2AZ13E/ZZhmkMi/ZHWN6HOkvxgFoW1E7ZaUTUr9DBqXLROcx0RFmTSbMYFjbogXzn/LEOECWBw==
  • ns2.bdm.microsoftonline.com
Cloud / SaaS Services Detected
Microsoft 365 Mailgun KnowBe4

Leak Screenshot:

Leak Screenshot