Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo crosswear.co.uk

Group: madliberator

Discovered by ransomware.live: 2024-07-17

Estimated attack date: 2024-06-19

Country: GB

Description:

Crosswear has been trading since 1972 and business has evolved to become very much focused on wholesale distribution to the partyware and greeting card trades.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 38

Third Party Employee Credentials: 0


External Attack Surface: 12



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • crosswear-co-uk.mail.protection.outlook.com.
TXT Records
  • MS=ms40862202
  • Sendinblue-code:02547c54f8fe9383d839065211385c3c
  • google-site-verification=3N0AX3nVhusHPmlsGDtu9kJj2kEp3s-GlYbNORw4qjM
  • qudcq6od99cp54ej5gqgg5mjok
  • v=spf1 include:spf.protection.outlook.com include:mail.crosswear.co.uk include:remote.crosswear.co.uk ip4:93.114.184.177 ip4:94.126.44.3 ip4:217.39.153.209 ip4:93.114.235.132 include:spf.sendinblue.com ~all
Cloud / SaaS Services Detected
Microsoft 365 Sendinblue

Leak Screenshot:

Leak Screenshot