Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo cap.org

Group: dispossessor

Discovered by ransomware.live: 2024-04-19

Estimated attack date: 2020-06-03

Country: US

Description:

cap.org


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 267

Third Party Employee Credentials: 2


External Attack Surface: 35



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • mxb-000c9301.gslb.pphosted.com.
  • mxa-000c9301.gslb.pphosted.com.
TXT Records
  • globalsign-domain-verification=3B0A365CCCA305F35937ADF4644ACF87
  • _globalsign-domain-verification=bgZ3C0m098xPnuHvLu9O-Iw152oHj9QQ474sM44z_k
  • atlassian-domain-verification=Q44GrdSILONDmga22XUQ7mBdvUKe6q7g6APZo3aaLtlIuzxoisFW2QleCJ6DDOIA
  • globalsign-domain-verification=C3991781F5205612B09684DDDE756DC5
  • openai-domain-verification=dv-KR2pi8FQuAqBf9v0FAn5lsKF
  • globalsign-domain-verification=sQ-XKBfUo5JDJd8xvoOg94ZQ0q4WWtarHMUXPLXva-
  • google-site-verification=-npF7KWLZ5XhLv2hIs-gMY2fufY4Uczi5pJ51XFrJ8E
  • onetrust-domain-verification=73761c423588422aa7b4d92132895a69
  • globalsign-domain-verification=EC25BF842D4FF3ABB46308AEDC5B6215
  • globalsign-domain-verification=883e552cf2b9705d24e8d705c588c2a4
  • globalsign-domain-verification=f7a0b27edfdd1c657a4880b116e9088a
  • sophos-domain-verification=0ece1214a48b5e237d38818ca3b4a58d01c3fa0dacb36fce2ce36158aa4bbbc5
  • MS=ms88788912
  • globalsign-domain-verification=997F81020BE595C62744868ECAA8415D
  • globalsign-domain-verification=e5d20d00b4a6fe8e1e9bdb47bc0d7d12
  • globalsign-domain-verification=2CEgjA6P1kNRQIjrtHWLbey_9v9K9N9yPfgdOzV2HA
  • google-site-verification=Kz_b5lJxakGbBQgW1A0L3EODFlrdz2Oq8pyiHal6CMA
  • v=spf1 mx include:_spf.salesforce.com include:spf.aristotle.com include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • 0bjYh7M+3OWJKFGK2aSHiVOFdMhrUVqGh/mk+nDilTELaH0XveSKjxiyv14y6at8C+Pi3zcaitDk0Ce8mkHVGA==
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Salesforce OneTrust Proofpoint Sophos

Leak Screenshot:

Leak Screenshot