Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo x-cart automotive

Group: funksec

Discovered by ransomware.live: 2024-12-04

Estimated attack date: 2024-12-04

Country: GA

Description:

[AI generated] X-Cart Automotive is a company that specializes in providing e-commerce solutions specifically tailored for the automotive industry. They offer a robust platform that enables automotive businesses to create and manage online stores, featuring tools for inventory management, product cataloging, and customer engagement. X-Cart Automotive focuses on enhancing user experience and streamlining operations for automotive retailers.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 133

Compromised Users: 253

Third Party Employee Credentials: 4


External Attack Surface: 84



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
TXT Records
  • google-site-verification=NJo458qBeKvLXV_0F-Ucv1uCbHJuVPiz1dsRCGEMmjk
  • google-site-verification=QYT728KopJg2wQzETCKTfpw-aBfe7KV5UuJ9ZX74zX8
  • google-site-verification=cltVwoaTF-5VXanqW7w7GYon0kiGiSEcTLGB5mRUvVo
  • google-site-verification=jfCX5BSbVuFhko_N7hWGkEu0VxoJsqh4gEWC_GpKdzA
  • google-site-verification=pGWecpsvG6IuPVRJVcStqkesYJWM40-0XfldN_zsU9E
  • mandrill_verify.tIcfOkh3REoZdTRb1PE6aQ
  • pardot885593=29218e334da80f4561a8e31e70e350d932abadf830f56d2f8b2e98177555e099
  • slack-domain-verification=7AXv4hnHLTYFQw67idmGZmNEd519k7l2ZmTAnLQe
  • v=spf1 include:ipspf.x-cart.com include:_spf.google.com include:spf.mandrillapp.com include:servers.mcsv.net include:aspmx.pardot.com -all
  • google-site-verification=1NcWP5FzjjIdxQayXCKpIo1Dv4bANi50E-O1OPxYoIk
Cloud / SaaS Services Detected
Mailchimp Salesforce Slack Mandrill

Leak Screenshot:

Leak Screenshot