Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

hl.co.uk

hl.co.uk

Group Apt73
Discovered 2026-04-27
Est. attack date 2026-04-27
Country GB

Description:

The hl.co.uk domain is owned by Hargreaves Lansdown (legal name "Hargreaves Lansdown Asset Manage...

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • hl-co-uk.mail.protection.outlook.com.
TXT Records
  • stripe-verification=25512be99e92de15d9e4f64981925f2541a82db0f66ef16fe8b62381c6bb2ea4
  • twilio-domain-verification=8ed5dccd8fe28feb0030682a1212392e
  • _82qydptaxlpkgixcpiy9u2cti4c4kiz
  • teamviewer-sso-verification=d0eab969da944d8d8d27885b140c1d83
  • _b2y0g6wthgod3hnx6296e7030x1kdjk
  • _4zaotsvt573vau4jqos87aj94jh9kaz
  • nhf3gqrp943ftsgy8kn30s85fdzbd668
  • 36y75wtmf34txg7ztwytrcmg892y0v4p
  • docusign=db44e162-46b1-44d6-92c9-739e58493b9c
  • uOKDGrxgaenp4jGP7rIbPJmS76huRlvJJ2vcMrh7+gEhxrj1GDebWIilPobhoMmM7JaJPO2ix5RuAw3HbUCXAg==
  • atlassian-domain-verification=rIZF1CMSUOszs7jXlPOD2QU9uQ8XBQUUDFXE77lSpohg68vCTdXahGDC5yYHtsV6
  • XR2S93E9DGUALh62oBeuIGWFb7LYDHvLD0ZAXDbQ7njfxfWHfQR1KyEFnseMcHAHuhQB9xJdEx4JAYo14nL/nw
  • 9py0qg92sk0d7kpjwmqyyq0w2vfrbs3n
  • google-site-verification=ij9ZFXy2KjHiAOYbYHEm5AQ-mFHhurBeQ9z_FU8I7Vw
  • miro-verification=ec204d7b5a5f910ab93c6138c2581a5e6a21ed25
  • nLk0ryVW=8800e6d8b5214909e7f38fe79da924ef
  • b59x4wAntfvC/sKlxq4uQ7qbraSJlJqNilf5z5wNDIASLpdXwIVZ3mzLezUZMyCWnKopsz6VL3HNAlW9uz8hNw==
  • pardot225582=b34bc899470899c947b3f5a059becae5a17c0ba238b0feb8dd3f38b31241d60a
  • docker-verification=52f1c422-0dc2-4c23-a80a-b1d32efb41f4
  • gitpod-verification=HtJv5wHwLVlus9F_xKAd32517DQloU9tTf1D6kC6bA4=
  • hxpg5wk922rsn835t3jrtrjpfmrng9c6
  • apple-domain-verification=5QX08xilqcvzV0h2
  • onetrust-domain-verification=70ce28e14b8f2213950960cca39510a9c956e116132341490aa51607ec3c6bba
  • _dq6k5w2ofpsdr9rc8zorwl8wjtpya2v
  • MS=ms22200360
  • uber-domain-verification=6bf89c00-376d-48dc-8aba-cde1144511c4
  • onetrust-domain-verification=a86649715bb24cc69ef33a40c29d2e29
  • v=spf1 a:mailproxy.hargreaveslansdown.co.uk a:hltech.com include:spf.protection.outlook.com include:spf1.hl.co.uk include:amazonses.com include:_spf.salesforce.com -all
  • sending_domain225582=3132d13398451912fdcdee1bd235bc6d3bd0af26ae10a961ae25ec784cc98c61
  • google-site-verification=54X5f1kKFbB47FlWj60bO3WA-hfFsnLriDBwi710I5w
  • formstack-domain-verification=49b4ea693fc9e357547c9fe2161b07f8
  • segment-site-verification=ydeCYDpBI8sblrAPCAui7b1cHVJzl91w
Cloud / SaaS Services Detected
Apple Atlassian Amazon SES/WorkMail Microsoft 365 Salesforce Stripe Twilio Miro Segment Teamviewer OneTrust DocuSign

Leak Screenshot:

Leak Screenshot