Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo icn-artem.com

Group: lockbit3

Discovered by ransomware.live: 2024-01-24

Estimated attack date: 2024-01-24

Country: FR

Description:

ICN Business School is a Grande Ecole of management (selective higher education institutions, which provide high-level training) triple accredited AACSB, EQUIS and AMBA. Associated with the University of Lorraine, the school is authorized to issue a...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 40

Third Party Employee Credentials: 8


External Attack Surface: 13



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse support.gandi.net
  • e534244e5866bd330b190581abfcd0cb-1697473 contact.gandi.net
  • a021362035623971bf78b40fd5b910fa-30432858 contact.gandi.net
MX Records
  • icnartem-com0i.mail.protection.outlook.com.
TXT Records
  • docusign=2de75bce-8bcc-4b62-9bad-52bf9864b9a0
  • google-site-verification=LCGbmG3Rq70gN8Dwk2yrgaQ4LAVuP6YgkLBJBMxBLSQ
  • d365mktkey=KrSrsv0e4bvXTfIIiAE19NzTp6mqklhzaxzLQiJzqRsx
  • atlassian-sending-domain-verification=03f0b6b0-97fe-4c3d-988b-357df2a4743b
  • docusign=070d6ce0-3dc0-4375-9fb2-595a48977f98
  • atlassian-domain-verification=ePHB4GRQGljKlFHQ7aGxak4wasSvFQGl46E7G2UNrVJhLiSeq3Qvuqer3fPptVXP
  • v=spf1 ip4:194.214.123.217 include:spf.protection.outlook.com include:spf.sendinblue.com include:servers.mcsv.net include:spf.ymag.cloud include:spf.mailjet.com include:140423271.spf04.hubspotemail.net -all
  • ZOOM_verify_0vPNHKBqRwSvBVNEN_Ly5g
  • apple-domain-verification=rD5MWPK36i9Aaz12
  • brevo-code:b8c41c52df56e73d781186cd5bd48e11
Cloud / SaaS Services Detected
Apple Atlassian HubSpot Mailjet Sendinblue DocuSign Zoom

Leak Screenshot:

Leak Screenshot