Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

The Chas. E. Phipps

chasephipps.com

Group Medusa
Discovered 2024-02-16 21:15 UTC
Est. attack date 2024-02-16
Country US

Description:

The Chas. E. Phipps - the company was founded in 1921, and currently employs 67 employees. The company supplies concrete accessories, concrete repair materials, sealants, coatings and various building materials to contractors. The Chas E Phipps corporate office is located in 4560 Willow Pkwy, Cleveland, Ohio, 44125, United States.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 1


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • chasephipps-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=DMARC1; p=quarantine; rua=mailto:amoskeag@chasephipps.com;
  • v=spf1 include:spf.protection.outlook.com include:50184963.spf10.hubspotemail.net include:_spf.bigcommerce.com ip4:162.155.104.146 ip4:162.155.104.218 ip4:162.155.89.210 ip4:71.67.15.234 include:spf.mandrillapp.com include:_spf.google.com include:sendgrid" ".net ip4:23.21.109.197 ip4:23.21.109.212 ip4:147.160.167.0/26 ~all
Cloud / SaaS Services Detected
HubSpot Mandrill

Leak Screenshot:

Leak Screenshot