Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo cassinfo.com

Group: clop

Discovered by ransomware.live: 2025-02-10

Estimated attack date: 2025-02-10

Country: US

Description:

[AI generated] Cass Information Systems, Inc. is a leading provider of integrated information and payment management solutions. Leveraging its advanced, proprietary technologies, the company provides corporations with detailed analyses and controls over their expenditures, enhancing visibility, accuracy and processing efficiency. The company's services include expense management for telecom, waste, energy and freight.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • cassinfo-com.mail.protection.outlook.com.
  • cassinfo-com.mail.protection.outlook.com.
TXT Records
  • intacct-esk=0F53D536ADC38BE5E0633606790ACFEE
  • VZm8SpyD5MZiLibUchYTqJOXInp2FLFu
  • intacct-esk=1759BFF0D9CF5011E0633506790AD9E5
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGoQCNwAQdJBy23MrShs1EuHqK/dtDC33QrTqgWd9CJmtM3CK2ZiTYugkhcxnkEtGbzg+IJqcDRNkZHyoRezTf6QbinBB2dbyANEuwKI5DVRBFowQOj9zvM3IvxAEboMlb0szUjAoML94HOkKuGuCkdZ1gbVEi3GcVwrIQphal1QIDAQAB;
  • 7KfpjUO7AHtJgKKzEl1p1l/04oYFtZ/y9ufZFa3ZLLv9fj6zp5RSMopTb6MT1gzfj6mHB2qD3h6TOkDdNAyiug==
  • docusign=036bdb40-91a8-4274-9018-79027656342b
  • duo_sso_verification=yNWlsi1MF4kbyXTDtHdfDs1UidzhFQlAAWB0nun8AtDt0HeBCkS6GsEJtfy2f6ZA
  • bmuskctem7blapc0g0r40cj8h4
  • 748ecc8b8e975767d64ccfafe0f8c63c.8634dfb2e7059678efbef58f4e085c35.sectigo.com.
  • ms-domain-verification=4f6e9a31-6e00-489b-a481-aa39fa4aa7de
  • MS=ms86728024
  • uv88f85o9ce98ltblfen6gfabt
  • google-site-verification=wo0LZ2udBuIqiRvLOpzrVNkSleLUeFiusranUOtomr4\010
  • 16F7C4F6F646DFAE75FC2C8FA7FDE3CCCC6E269F92F7C15FB324E5EBE87ECADA
  • docusign=bd3b856e-e494-483e-b193-6805fd796c07
  • tq6cmr3lndbqstg4shi8f9ik2n
  • sending_domain668083=24f133fbc1865bdbe0d365b9f0b02e040a462a59d4d78a265436cbf89c9d044a
  • spf2.0/pra a mx include:spf.protection.outlook.com ip4:216.71.142.218 ip4:216.71.147.197 include:senderidhost.messageprovider.com include:_spf.salesforce.com ~all
  • google-site-verification=HvX9Z8Xh0bz0-TWVzg0_DPUt0HAYQi4c83UTT4RvKqE
  • v=spf1 include:_spf.cassinfo_com._d.easydmarc.pro ~all
Cloud / SaaS Services Detected
Microsoft 365 Salesforce Cisco Duo DocuSign