Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Zeifmans

Group: play

Discovered by ransomware.live: 2024-12-30

Estimated attack date: 2024-12-20

Country: CA

Description:

Canada


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 1

Third Party Employee Credentials: 3


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar dot.ca
  • fcastel fremaux.fr
  • lwz zeifman.ca
MX Records
  • springbankcap-com.mx2.arsmtp.com.
  • zeifmans.ca.1.0001.arsmtp.com.
  • zeifmans.ca.2.0001.arsmtp.com.
  • springbankcap-com.mx1.arsmtp.com.
TXT Records
  • MS=25BF0109FCAF3E653C6D484D7F95941D17D3A4D8
  • bS0j2G7Rd/fmGGtboN2pQC60c70J4mPfiIrs5GjqjMgUUugHIMKXP6Vt1gilDkYZhAfzr1vEOvmEvFNho6QgGA==
  • v=spf1 ip4:199.243.102.131 ip4:64.62.36.38 include:ca._netblocks.mimecast.com include:edgepilot.com -all
  • tl50uq99fafcn0c1pgg8vqelsf
  • MCI Canada CTAC +1 888 886 3865
Cloud / SaaS Services Detected
Mimecast

Leak Screenshot:

Leak Screenshot