Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.cobeldarou.com

Group: ransomhub

Discovered by ransomware.live: 2024-11-21

Estimated attack date: 2024-11-21

Country: IR

Description:

[AI generated] Cobel Darou is a pharmaceutical company specializing in the import, distribution, and marketing of healthcare products. It focuses on providing innovative and high-quality medical solutions, including prescription medications, over-the-counter products, and medical devices. The company aims to enhance healthcare access and improve patient outcomes through partnerships with global pharmaceutical manufacturers.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 9

Compromised Users: 5

Third Party Employee Credentials: 2


External Attack Surface: 5



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse registrar.eu
MX Records
  • mail.cobeldarou.com.
  • smtp.cobeldarou.com.
TXT Records
  • v=spf1 mx ip4:5.160.99.64/26 -all
  • 6570f4351e13c98afbbd67fd6cb47f090a17ba49b9331fa383ca053e0124ca0
  • imp7Z4ohyb1j0znNoy5xsYJewo3Pd4A4YX83KEFaZ5svtr1VqQUeeN3z4L0GIb7s8hEz6GkJRh9wj8zSlZLuLw==
  • MS=ms23340183
  • ffee804230f4e9bc31ec9582252d8ba13b47daa47da7a1653aaf0696037314b8
  • google-site-verification=TYmJ5pZW5yKlRvOu957DreSuK2AeYdUpKs6nmJPuTCg
  • f200aa498b3b3850d903fbb05c4ccf38722620d1344194e6383a912e0b63423
  • 662f925902dc3ff33d415da0619b5d35ab98d12487cf082f1f2dccd8cdfbea0
  • 614aa4c7a233f8b2d3715ecfece8239a3ba4a37e343a50b44645b46affadf8d
  • google-site-verification=oE7f5e7FyQx4rp0Uu6ub9Re5rvy677guc98RkmtUUxw
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot