Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.jsp.com

Group: ransomhub

Discovered by ransomware.live: 2025-02-10

Estimated attack date: 2025-02-04

Description:

[AI generated] JSP is a leading global manufacturer of protection equipment including industrial safety helmets, respiratory protection equipment, eye and face protection gear, and hearing protection products. Their solutions are extensively used across construction, manufacturing, oil and gas, and other industries where workers' safety is prioritized. The company boasts a commitment to innovation, offering a vast range of products designed with the latest safety technology.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • legalservices eurodns.com
  • alex.webster jsp.com
MX Records
  • mxa-006d7e01.gslb.pphosted.com.
  • mxb-006d7e01.gslb.pphosted.com.
TXT Records
  • duo_sso_verification=urSSCbc1nR46RqoweGcb2pOPEmlTdGOC59O9pbVi10svfuKPH4nxNg3JTNspN1fK
  • MS=ms19523853
  • apple-domain-verification=LyaTbgzIdB8W2aSF
  • v=spf1 mx ip4:205.142.62.0/24 ip4:205.201.128.0/20 ip4:198.2.128.0/18 ip4:148.105.0.0/16 ip4:88.103.218.165 ip4:54.173.0.182 ip4:54.175.172.60 ip4:80.250.17.146 ip4:205.220.180.233 a:challenger.jsp.com a:columbia.jsp.com include:spf.protection.outlook.com" " include:_spf.salesforce.com include:spf-006d7e01.pphosted.com include:mail.zendesk.com include:amazonses.com ~all
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail Microsoft 365 Salesforce Zendesk Cisco Duo Proofpoint

Leak Screenshot:

Leak Screenshot