Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Discovered 2023-04-19 20:00 UTC
Est. attack date 2023-04-19
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

ExportHub Ltd. is committed to safeguarding its users' privacy. We request all our users to read the following 'privacy policy' to understand how their personal & business information will be treated, as they make full use of our services to their benefit. This policy is applicable only to the entire network of marketplaces operated by EH and not by any other company. ExportHub's primary goal in collecting personal or public information is to provide the user with a customized experience on our network of sites. This includes personalized services, interactive communication and other services, most of which are completely free and remaining are paid. Business information is used to display the user's business listing or product offerings across our network to fetch maximum business opportunities for the user....

Infostealer activity detected by HudsonRock

Compromised Employees: 5

Compromised Users: 3090

Third Party Employee Credentials: 0


External Attack Surface: 104


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuseenom.com
  • ptccffhshwhoisprivacyprotect.com
MX Records
  • mail.exporthub.com.
TXT Records
  • google-site-verification=9WSS9O5bq7_y5DJR4WiUiVYpSx_7_WZyuV-JKikKGVo
  • v=spf1 include:_spf.elasticemail.com include:_spf.google.com include:_spf.exporthub.com include:spf.sendinblue.com a:marketing.tkdigitizing.com ip4:167.114.39.66 +ip4:67.225.248.144 ip4:167.114.223.192/26 -all
  • Sendinblue-code:ba0d1037be614f25e5273f95c6da832d
Cloud / SaaS Services Detected
Sendinblue

Leak Screenshot:

Leak Screenshot