Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo mechdyne.com

Group: ransomhub

Discovered by ransomware.live: 2024-09-12

Estimated attack date: 2024-09-12

Country: US

Description:

Mechdyne Corporation specializes in advanced immersive and collaborative technology solutions. They offer a range of services including virtual reality, visualization systems, AV integration, and IT services. Their solutions cater to industries like education, healthcare, and defense, enhancing communication, training, and decision-making processes. Mechdyne is known for innovation and client-focused service.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 5

Compromised Users: 26

Third Party Employee Credentials: 6


External Attack Surface: 12



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mechdyne-com.mail.protection.outlook.com.
TXT Records
  • duo_sso_verification=PUfbWgxYECYUg68Oky8BLmTwYT0bbe5ppO30wNit76opoUcRKPsu1nocPuV7IjxV
  • 9/5ao9Kl1p9OFLJZnaCqIJ0X3XWIE7Be3d2hEV3+yYloBFjOZ3v0SXTatnwSfavQZ3ijtjD9aQORmB9+ajtrkw==
  • ca3-42e807319bfb4d37900197fb051c7c4d
  • pardot844033=8ac55bd1e6e84b67cf762033de7eab85315eb962a56823783475c9bb17402217
  • ca3-423f6f37489f446fb17aa49ebc662e72
  • MS=ms42582532
  • v=spf1 include:spf.protection.outlook.com ip4:216.248.81.128/27 ip4:96.127.44.88 ip4:96.127.76.116 ip4:72.84.97.139 ip4:71.120.134.227 ip4:23.21.109.197 ip4:23.21.109.212 ip4:147.160.167.0/26 include:mktomail.com include:spf.mandrillapp.com include:salesf" "orce.com include:abs-inc.com include:app.teamsupport.com ~all
  • google-site-verification=Xyq_GBqp8_CBQVI_1Bz2_6ShJnxx2tjkzvrShWt5K20
Cloud / SaaS Services Detected
Microsoft 365 Salesforce Marketo Mandrill Cisco Duo

Leak Screenshot:

Leak Screenshot