Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo virginpulse.com

Group: dispossessor

Discovered by ransomware.live: 2024-04-19

Estimated attack date: 2023-03-15

Country: US

Description:

virginpulse.com


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 14

Compromised Users: 1653

Third Party Employee Credentials: 3


External Attack Surface: 90



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse comlaude.com
  • virginpulse.com-Registrant anonymised.email
  • virginpulse.com-Admin anonymised.email
  • virginpulse.com-Tech anonymised.email
MX Records
  • virginpulse-com.mail.protection.outlook.com.
TXT Records
  • docusign=2364af33-3dac-4088-bb7d-6e55655fd935
  • mixpanel-domain-verify=81fa5a63-33f2-4e6f-b9f4-b0f879666718
  • shapeup.azurewebsites.net
  • 17f43c05c1264af6817da649033e9371.virginpulse.com
  • google-site-verification=o_5qx67vcYHTNhnfbIdXvQqwCXNI-jnVfwWSzbQIn38
  • citrix-verification-code=fe842e36-ea03-42e5-98b6-a521a0011d9c
  • hp9yxr3xbm3yb3cjn6c015jk0b7z8pqh
  • apple-domain-verification=q6Vv126ElugB2qpt
  • google-site-verification=WUkCccwprfmsb-C00JKj2jpAKBV_8dFX7di1GJPTJTY
  • v=spf1 include:spf1.virginpulse.com include:_spf.paubox.com include:spf.protection.outlook.com include:_spf.salesforce.com include:393154.spf10.hubspotemail.net -all
  • google-site-verification=-bLyvMyuqUzCwmaaft1kFxJLjupfElMvpM4Lo4m9T5o
  • box-domain-verification=6537cc92c7abbfb08a4d04a495dda15d0877bf104eef5913a70498c6ac4714b2
  • asv=207e3a9789f426425d2059f52745b56c
  • atlassian-domain-verification=dLHLZTLCvgq9kewNRYjoavb6SjXRtsyrEBt7GKEMc2YrTo4Xz3LSEJQxhkKzMBbb
  • google-site-verification=TwLuthEG_DaCZxS2cM8Df4YgM137Najih8dqKFT1dGA
  • airtable-verification=00b91d1d5ab2b869acb38643fa7d60cc
  • smartsheet-site-validation=86wZ53-R-uP9ITFys_81rCmpCA9-ZSMw
  • qco6dfqn47jj3ae0rtek00uh67
  • 0ed1fe018a2de4ad214c5241ed8f5767b7b15ba625
  • google-site-verification=KLQJ9YGIwOXqfBtzBn_n32AjWBsjjCx_VDG2HlYakPg
Cloud / SaaS Services Detected
Apple Atlassian Box HubSpot Salesforce DocuSign

Leak Screenshot:

Leak Screenshot