Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo proskauer.com

Group: dispossessor

Discovered by ransomware.live: 2024-04-19

Estimated attack date: 2022-01-15

Description:

proskauer.com


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 4

Third Party Employee Credentials: 0


External Attack Surface: 5



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • 4vg8g6d162lknjk063hywq32d5tpnbw4
  • google-site-verification=Gp8_jto5Y1riXnE4QT_T0d9gZMOXhhtK8F6Ggb-Uiws
  • smartsheet-site-validation=vqHcpt0JtdZS8j6Nma8NctpV6zqJBVz2
  • cisco-ci-domain-verification=7966630a4e5eebe5db240568c6471cdf9c73c672ba05a8e7ee86b156a3e97900
  • v=spf1 include:_netblocks.mimecast.com include:spf-us.vx-email.com -all
  • citrix.mobile.ads.otp=mb4yoxp8e71mrp96hbdsj
  • MS=6DE8C79123D97BB2F2E30CD6D7F52EFC07B9E386
  • docusign=80d495ed-f8b5-48fb-b38c-1e052f1836c8
  • 45ycxpbtf294c7b3yrmx3gcsr31g7xxq
  • openai-domain-verification=dv-V0eljae2R7BtvlSK8BfocZQQ
  • dell-technologies-domain-verification=proskauer.com_f35d27ca-6008-4cbf-9bb1-790c0b139c97_1688673823
Cloud / SaaS Services Detected
Cisco Mimecast DocuSign

Leak Screenshot:

Leak Screenshot