Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Discovered 2025-04-10 13:07 UTC
Est. attack date 2025-04-10
Country FR

Description:

Harvest is a French TechForFin of more than 35 years in full development. Harvest is the leading FinTech in France for software dedicated to the wealth management and finance

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • nocgandi.net
  • b461a7d50a2c11838361e25dbc53dc27-1155308contact.gandi.net
  • supportsupport.gandi.net
  • nddadista.fr
MX Records
  • harvest-fr.mail.protection.outlook.com. Microsoft 365
TXT Records
  • CertEurope=Z5qE3327TSB9rxr9YvA4Ef5p5ftNiQ
  • globalsign-domain-verification=qycOm-lWTh7dRJVpl9H3kvDL1kS5Y2NCqT8Qkkj9Bu
  • MS=F392C8D10004334F73E75E8B2CA6128ACFCFC736
  • v=spf1 ip4:158.95.34.72 ip4:158.95.34.73 ip4:158.95.102.246 ip4:158.95.102.247 ip4:158.95.37.90 ip4:158.95.37.91 ip4:158.95.140.70 ip4:158.95.140.71" " ip4:37.187.154.193 ip4:194.177.54.4 ip4:91.209.154.123 ip4:194.177.57.241/32 ip4:194.177.57.242/32 ip4:194.177.57.248/32 ip4:194.177.60.5/32 include:spf.rp01.net" " include:mta.spf.waycom.me include:et._spf.pardot.com include:_spf1.mailgun.org include:_spf2.mailgun.org include:_spf.eu.mailgun.org include:_spf.salesforce.com" " include:spf.protection.outlook.com -all
  • _globalsign-domain-verification=9A7H5BHWiEPw1F7jLQDwA2Ik5CiuSPsVMafSVKupqj
  • Foxit-domain-verification=5b7191ffbfb596683be473325537b47d
  • atlassian-domain-verification=iJpbrmaJ7SzczcglYKCmZvGrxG3/oKMvMi5UQ9ZMrB3nticgMNfNbViDtks4HHpz
  • O3@-Q8$-2F%
  • CE2Pg+nVQlP7IlZGjGJNP/wBWI4=
Cloud / SaaS Services Detected
Atlassian Global Sign Salesforce Mailgun

Leak Screenshot:

Leak Screenshot