Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hcsgcorp.com

Group: underground

Discovered by ransomware.live: 2024-10-25

Estimated attack date: 2024-10-25

Country: US

Description:

Revenue:$1.7 Billion - Country :USA


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 23

Third Party Employee Credentials: 15


External Attack Surface: 4



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • alt4.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
TXT Records
  • qd44cjcfq0lbpd4r6u32rfm0rq
  • 5m4gnrpk6qefd2omt6kuerasj2.
  • google-site-verification=vTpszbj4l_nUWEtmN3iFSKqvJB8S8w5JiPNhopLy8wE
  • 5vrom42qp065065mcbodo9og8a
  • pardot1036773=89f80070d1ef49ddf21932e9679a59299aed37bd9b265e484eaca0e5b7695c93
  • 2n162b5kd1am6m55ippti9hgk7
  • 44bc0lolojgisvisv361puch4j
  • pardot1033003=eb0f43c43d9730abacc68391e64132317e5902d4d3301ba5b2955d0f29b919bf
  • sending_domain1033003=12e97ffb43248328b230a539f81347428cabfe1dcf3336e09d7c0adcc43dbfa6
  • twilio-domain-verification=75854c3e973e1db9ee2348c968341dd5
  • B9FF4D49937E2314789A2DC5E1F22F84B983797D8E9C67AC2DD16E5180A9685E
  • pav5vlkvttomcie5r4pev49gtv
  • 5iako7bicol46gkikid70a8qa6
  • vcl4an59gte63kkrkpddsag0fi
  • MS=1EAE1519C176C27537342B4EFE567FD15FBB598A
  • sending_domain1036773=3d7fb9de3b50624eef968acdde4cebaf6ebab01ebd6e873fd02cde54879581ca
  • v=spf1 include:_spf.google.com include:_spf.q4press.com include:emailus.freshservice.com include:email-od.com exists:%{i}._spf.inkyphishfence.com ~all
  • docusign=5df5a6ee-acc0-492a-bee5-017c337bb4e3
Cloud / SaaS Services Detected
Salesforce Twilio DocuSign

Leak Screenshot:

Leak Screenshot