Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo regencyfurniture.com

Group: cactus

Discovered by ransomware.live: 2024-04-02

Estimated attack date: 2024-03-23

Country: US

Description:

Download link #1:  https://***************.onion/REGENCYFURNITUR/PROOF/Mirror: https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/REGENCYFURNITUR/PROOF/DATA DESCRIPTIONS: Personal Identifying information, financial statements, corporate correspondence, contracts, employee and customer information, executive managers personal data, database backups, etc. 


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 3

Third Party Employee Credentials: 0


External Attack Surface: 3



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • smtp.google.com.
TXT Records
  • NETORGFT17406094.onmicrosoft.com
  • google-site-verification=X4wGAUtYgT5IeN07rFiZpb8e3TjiGBRPWzZAXxpiJjg
  • google-site-verification=W9NsJjPuNTEy2nKT7BApRdb_7ZoQdytX9Fzj6IuPsOw
  • facebook-domain-verification=4g3ysqk0kqa91h4fgjeyzzhpmaxeit
  • google-site-verification=71kckC33YC39b8SZ4Zg72OQiLxOEoPnFW2ZkRtHPwVU
  • NETORGFT9633854.onmicrosoft.com
  • v=spf1 include:46762405.spf04.hubspotemail.net include:secureserver.net -all
  • include:46762405.spf04.hubspotemail.net
Cloud / SaaS Services Detected
HubSpot

Leak Screenshot:

Leak Screenshot