Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo corehandf.com

Group: threeam

Discovered by ransomware.live: 2025-02-05

Estimated attack date: 2025-02-05

Country: US

Description:

Founded in 2010 and headquartered in Vancouver, Washington, Core Health and Fitness is a privately-held marketer and distributor of commercial fitness solutions to health clubs, community recreational centers, hotels, and educational facilities.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 19

Third Party Employee Credentials: 6


External Attack Surface: 8



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse support.gandi.net
  • 6f5993a21ca91df558370e7032c45ea1-1788118 contact.gandi.net
MX Records
  • corehandf-com.mail.protection.outlook.com.
TXT Records
  • apple-domain-verification=Byo9RgCnMpIedWGF
  • google-site-verification=q47c1Jr4osirz7mpWYBGooY-ck0g8r9UDnRlHQBuh6M
  • v=spf1 include:spf.protection.outlook.com ip4:52.3.237.34 ip4:40.92.0.0/15 +ip4:52.1.22.105 +ip4:3.19.93.167 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip4:167.89.0.0/17 ip4:50.31.32.0/19 ip4:198.21.0.0/21 ip4:149.72.0.0/16 ip4:3.93.157.0/24 ip" "4:69.72.32.0/20 +ip4:54.155.87.88 +ip4:52.72.211.23 +ip4:3.222.57.146 ip4:168.245.0.0/17 ip4:159.183.0.0/16 ip4:63.128.21.0/24 ip4:3.210.190.0/24 ip4:54.174.52.0/24 ip4:54.174.57.0/24 include:_spf0000000.corehandf.com ~all
  • _okhvwl26ui305ibritjic34rqjpi7rv
Cloud / SaaS Services Detected
Apple

Leak Screenshot:

Leak Screenshot