Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo caravanclub.co.uk

Group: lockbit3

Discovered by ransomware.live: 2024-01-25

Estimated attack date: 2024-01-25

Country: GB

Description:

The Caravan and Motorhome Club


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 352

Third Party Employee Credentials: 0


External Attack Surface: 21



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • cluster3.eu.messagelabs.com.
  • cluster3a.eu.messagelabs.com.
TXT Records
  • hj=caravanclub.co.uk-07052021
  • iXOvf0biP+53Paa+Pw8n+qNTDdMagv71WexyWVZIvd0=
  • kdOuvYWHludHqg++6LwzpPQeFYhourYRXkm7egy91B4=
  • lL2DCAhMXXRM2XQvzPrUrhG4Azge4nx7hJEGDV5J9wI=
  • mBSolNOu5lttWmoPXXXHyvWvee7cp7k6ltQgaY1+jrk=
  • uGoDh5JJTTSywBcub9oPAFpOP5CfODTrd+heeooR9bM=
  • v=spf1 ip4:212.42.180.221 ip4:212.42.180.221 mx a ip4:62.6.174.69 ip4:185.9.217.103 ip4:46.30.192.127 ip4:31.193.12.172 ip4:78.137.120.33 include:spf.messagelabs.com include:_spf.google.com include:sendgrid.net ~all
  • _globalsign-domain-verification=ndgu30Di_sPXiSDMZyLA61ElIP3_W7rPjmUinDmYeI
  • google-site-verification=J3YAMt5II93VIa0tr09o7q1ZA0s76qGeQ0a8z_lXBws
  • google-site-verification=hVs33s2cMJJ8c00I0oykrXSQYxZ0Mak4uc5fGBOA7rI
Cloud / SaaS Services Detected
SendGrid

Leak Screenshot:

Leak Screenshot