Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

glprop.com

glprop.com

Discovered 2023-09-02 19:03 UTC
Est. attack date 2023-09-02

Description:

Global Logistic Properties Ltd. operates as an investment holding company, which through its subsidiaries engages in the provision of distribution facilities and services. Its business solutions include multi-tenant distribution facilities developmen...

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 2

Third Party Employee Credentials: 14


External Attack Surface: 17


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 595cc05070c0034bd20bb4887f0ce00cfba85a506eb9a1997587660d22d6b5b9glprop.com.whoisproxy.org
  • 595cc05070c0034bd20bb4887f0ce00c88fb65fbf3327a1466c56babac10d986glprop.com.whoisproxy.org
  • 595cc05070c0034bd20bb4887f0ce00c7513c2fe162c9cd0e653606861552236glprop.com.whoisproxy.org
  • 595cc05070c0034bd20bb4887f0ce00cbb21d0d46c5e9ceeb6fe41315c33390bglprop.com.whoisproxy.org
  • trustandsafetysupport.aws.com
MX Records
  • mxb-00821902.gslb.pphosted.com. Proofpoint
  • mxa-00821902.gslb.pphosted.com. Proofpoint
TXT Records
  • anthropic-domain-verification-skrxe5=QqUGZlqfNLdeLZquTPlbcKOOK
  • apple-domain-verification=gGyo08DSNcWfynMf
  • atlassian-domain-verification=uEU4h6qro5gReqnFS0wtOgEB4SMzkVf4RJA3V5AhudNqvmgAnMrO0hTEHLxumNdD
  • docusign=23221623-e49a-45c3-b375-2515b49a28d8
  • docusign=35239870-12fa-4d66-99ea-038da7601fe9
  • docusign=496e5d10-3c51-4848-825b-93704b78ec65
  • docusign=c455c44f-386a-460e-b776-96e5f467d7c9
  • v=spf1 include:spf1.glprop.com include:spf2.glprop.com include:sendgrid.net include:spf-00821902.pphosted.com include:spf-00821903.pphosted.com ~all
Cloud / SaaS Services Detected
Apple Atlassian Anthropic SendGrid DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot