Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo fiscdp.com

Group: dispossessor

Discovered by ransomware.live: 2024-04-19

Estimated attack date: 2020-07-20

Description:

fiscdp.com


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • fiscdp-com.mail.protection.outlook.com.
TXT Records
  • /g3S2CJhKD3wQ5XQ5YIvwg==
  • google-site-verification=oIFNNtbqarTcHK-245n131iRIsOMqmdhP-Vl3HkLtH0
  • google-site-verification=hqbKTNdXD2erRDjjx6MDy0L53Zq7iJ0iDAfKoUbbuu0
  • google-site-verification=P7CIpp--b9SsiWMzt40v_nLIiyTq-3twwmWXiSDfxYY
  • v=spf1 mx a:mailhost3.fiscdp.com ip4:74.231.247.145/32 ip4:23.21.109.197/32 ip4:23.21.109.212/32 ip4:192.145.231.0/24 ip4:198.37.153.186/32 include:amazonses.com include:spf.protection.outlook.com include:spf.em.secureserver.net include:spfhost.messagepr" "ovider.com include:fiscdp-com.spf.smtp25.com -all
  • jKLolJ+hNuvMZZlDSfLJ+8m67/n5lwf0vlPEp3bo3ElYmEZY+IgXfwusHQgedzCGcS3Z1wvBqDNx5Kh3Z76e1Q==
  • MS=ms38881115
  • google-site-verification=GC0cAKaFqzltl1Ym1qsWxxtOGZuNfFuoDKwRDwDm-cM
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365

Leak Screenshot:

Leak Screenshot