Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Alphv
Discovered 2023-11-02 11:26 UTC
Est. attack date 2023-11-02

Description:

-

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 59

Third Party Employee Credentials: 1


External Attack Surface: 14


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusenamecheap.com
MX Records
  • afsupply-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 a:afsupply.com ip4:67.219.182.10 ip4:67.219.182.11 ip4:67.219.183.10 ip6:2602:ff36:0:1::10 ip6:2602:ff36:0:1::97 ip6:2602:ff36:0:2::10 ip6:2602:ff36:0:1::20 include:sendgrid.net include:amazonses.com include:spf.protection.outlook.com ~all
Cloud / SaaS Services Detected
Amazon SES/WorkMail SendGrid

Leak Screenshot:

Leak Screenshot