Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Lynx
Discovered 2024-10-14 00:11 UTC
Est. attack date 2024-10-02
Country CA
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Funlab is the world's premiere creator of competitive socialising experiences

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 2


External Attack Surface: 0


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • itandsfun-lab.com
  • abusesupport.gandi.net
MX Records
  • funlab-com0i.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=4k-6WCZeCSYR0UoOw2L6n4kCJ3FaWPWd6wqp0o1LGDc
  • MS=0EF25567469BEF2881D15867E443546F7F39979E
  • v=spf1 mx include:spf.protection.outlook.com include:servers.mcsv.net include:mailer.dayforce.com include:_spf.google.com exists:%{i}._spf.mta.salesforce.com ~all
  • MS=ms25585621
  • google-site-verification=oyh1B5f13hmL1Gw_N5kqVWxUbuz4ICSgqsleES9Q1to
  • apple-domain-verification=yUDOuNjafCm8E1op
  • sophos-domain-verification=1badf65abcd2514a0a60f5d8c6e653ab92f09fec10507af38ffee3044adb2333
  • _vvnsi9hnhw4f2hz0cy4kn53yb38hdvt
  • stripe-verification=42A804BA7DEC65536DE9F70E64F022D55F6C99381AF560E34E5DDC9945239442
  • atlassian-domain-verification=NBmKQJpmCwp2xSg8eO2QT9R75O5eU6lfSm2tAmGPTgerIk229/j8CCz3oRA4dv7C
  • stripe-verification=FEBC99790AAF064A299559C92DD6B82584D381B4798D88B763BDA11681776762
  • amazonses:/ThZfqqCV6jy6hSemXaJS8GkbkJ3+0+5Jmc5PTeJNLE=
  • stripe-verification=7B5E94FD8F52E50CC0A769C7367E78B1A2D784D0F5748E7ED6371F20FCD8E8DB
  • F1WBYB728J7X5UMZ4ORL65NW8R82TNYHDTT4R7XI
  • teamviewer-sso-verification=ac8705e3ed9e432f9f086d3700105164
Cloud / SaaS Services Detected
Apple Atlassian Amazon SES/WorkMail Mailchimp Microsoft 365 Stripe Teamviewer Sophos

Leak Screenshot:

Leak Screenshot