Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hartalega.com.my

Group: lockbit3

Discovered by ransomware.live: 2024-01-10

Estimated attack date: 2024-01-10

Country: MY

Description:

The history of Hartalega began in 1988. Our insatiable drive to continually outperform ourselves has transformed what began as a single-line manufacturing facility into what we are today—the largest manufacturer of nitrile gloves in the world, with a...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 29

Compromised Users: 10

Third Party Employee Credentials: 16


External Attack Surface: 23



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domreg thegigabit.com
MX Records
  • hartalega.in.tmes.trendmicro.com.
  • smtp.hartalega.com.my.
  • smtp2.hartalega.com.my.
TXT Records
  • kSs62+Z0RormMOrhinB412mc4WfGm1JY8CqA34nivAxTDPYwTgkvOUwohpCPiR8nEoMO3soWa71mW1mRtUi/sA==
  • MS=A220FB22D8F73B4377CD80CAAADDAA41D970A80A
  • sZxQz233ChJRKSNS008OkasdAHa9VPcF9BwkXcXEXNeu5R+5SFjldC/48e/Vu4dWGNWdJ4IytwWECEP3P8Na9w==
  • google-site-verification=66N5tHbbNK7zBqt9xvttJPerJ11tP9taunIJta7JBEk
  • google-site-verification=W4_Je6MMt8E2ZdN3WpYSGnXwPVAbUgWAk3guYnfXvQY
  • v=spf1 ip4:118.107.220.168 +a +mx +ip4:103.212.71.20 +ip4:103.212.71.41 +a:hartalega.com.my +ip4:218.208.121.66 +ip4:58.27.23.70 +ip4:1.9.10.194 +ip4:202.188.143.60 +ip4:1.9.10.213 +include:spf.protection.outlook.com include:_spf-dc44.sapsf.com +include:s" "pf.tmes.trendmicro.com ~all
  • google-site-verification=e-DXthR0DTN5FFdxPhmAnY35CLSJqMdVQEBVgYU5cw8
  • tmes=fc13d40021d88fe230d319e9487d1a90
  • successfactors-site-verification=ODBmYzBkNDJhZDdlZjI3NzAxYTA1ODc2ZjkzZTc4YTJiMmRjYzY4YWU4ZTFmNjY0NWZjMjM3ZGJlNDIwZmJkOQ==
  • google-gws-recovery-domain-verification=54398408
  • 2GAP1TF1R5EGCSTQ949WGCNSDL3ANGU4U1H5W8P7
  • google-site-verification=gk6BGPqLNlk8RQAHlCqgp60qA2JskOAYKwjG03AVHLo
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot