Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hartwick.edu

Group: chort

Discovered by ransomware.live: 2024-11-17

Estimated attack date: 2024-11-17

Country: US

Description:

Status: Wait for Decision - details: Databases + Files of This Company


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 23

Third Party Employee Credentials: 18


External Attack Surface: 32



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • ZOOM_verify_mQYizjoqSROKCT43cfWevQ
  • apple-domain-verification=b7OLA9sMG8HO3kLH
  • geqtc5to2tvv72ag13aoikg1vo
  • google-site-verification=62WMymlCEAL2Y4RNn0PVAg6gfFXfKI8A0cvX7Ij5F9k
  • google-site-verification=aSdCr-AwCDN8-2WltW3WMEVFN-SSYRhNd2V8ulR_Lz0
  • google-site-verification=ncRhyRCjNCj1Cr-Y3Irv0JDFi2I7dHAvTHEyjFE1EC4
  • jamf-site-verification=0RdIiLUBcbbnigYkS-Hz2w
  • shth2jj683k1jiln81ktsa4isi
  • v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCBFuX4iw0hlSmTGaPrmlBH2jBJL7k55mSRY5ltdNlyghGul2DXQ4YKTQp8tLO6+ZHVvHvTsQ837BApGSrc2o+xrIB4UC/ggWxl7oG8oa3m/xxrnJc98WpPwOmxeqm0NRmfLGk/WjKy/+nWBps053uB/uJuttmzaYqsJcuh7aWvywIDAQAB
  • v=spf1 include:_spf.google.com include:spf.dynect.net ip4:66.109.37.198 ip4:216.59.66.186 ip4:74.205.250.0/24 ip4:174.90.126.0/23 ip4:199.15.214.178 ip4:54.174.89.209 ip4:34.102.239.211 include:a._spf.brightspace.com include:spf.watermarkinsights.com ~al" "l
  • 27u5fj5od0mf96d4okrev6guc4
  • 8ajfhc53m5oec8uomfn3si3btr
  • MS=9F36149B1EE8D59BC5621D02122F55434D0F2983
Cloud / SaaS Services Detected
Apple JamF Zoom

Leak Screenshot:

Leak Screenshot