Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo prasarana.com.my

Group: ransomhub

Discovered by ransomware.live: 2024-08-26

Estimated attack date: 2024-08-10

Country: MY

Description:

Prasarana Malaysia Berhad is a major public transportation provider in Malaysia, managing urban rail and bus services in key metropolitan areas. The company operates the Rapid KL, Rapid Penang, and Rapid Kuantan networks, ensuring efficient and reliable transit solutions. Prasarana also oversees infrastructure development and maintenance, contributing to Malaysia's sustainable urban mobility.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 22

Compromised Users: 265

Third Party Employee Credentials: 25


External Attack Surface: 53



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • compliance_abuse webnic.cc
MX Records
  • prasarana-com-my.mail.protection.outlook.com.
TXT Records
  • 2e3456cc-07c8-4925-90d2-ae8325c258c5__ef8s8lk58jg65smfgjav6ch0nl
  • docusign=83376db9-0ac8-4968-b63a-782508f64656
  • MS=ms12840286
  • ms-domain-verification=bdb33741-60a1-49ff-a4aa-897426ace928
  • v=spf1 mx ip4:58.26.8.172 ip4:211.25.233.75 ip4:58.26.8.131 ip4:20.53.184.249 ip4:175.140.137.177 ip4:175.138.28.241 ip4:175.139.143.209 ip4:219.93.109.153 ip4:202.151.242.2 ip4:175.143.5.105 ip4:210.186.146.65 include:sendgrid.net include:spf.protection." "outlook.com -all
  • ms-domain-verification=6a69abba-429c-4127-bb13-dabf51d5614c
  • v=msv1 t=FC72D672-55CE-48B3-A1DF-2AB55C7B9EA6
  • _53oqk01xur8gqkycpugqe0t2gexa6t4
  • docusign=0a6e0d87-c820-45fa-8239-ee53f343ad0f
  • MS=ms46109382
  • I/CXLCygxdXdBryFv03qtvCEXw1vlmdiKjP49o8EWz5Yd4gyVcyKUFYJ2rW8D2BWElwtYXDPhnki6gjKgb1Nng==
  • 4qv5zmpt9mthmlsj21qmcy9f19t8m7y3
  • include:spfa.cpmails.com
Cloud / SaaS Services Detected
Microsoft 365 SendGrid DocuSign

Leak Screenshot:

Leak Screenshot