Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

The Washington Times

washingtontimes.com

Group: Rhysida

Discovered by ransomware.live: 2024-08-14

Estimated attack date: 2024-08-14

Country: US

Description:

The Washington Times The Washington Times is an American conservative daily newspaper published in Washington, D.C. It covers general interest topics with an emphasis on national politics.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 30

Third Party Employee Credentials: 0


External Attack Surface: 25



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@directnic.com
  • webdev@washingtontimes.com
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • _globalsign-domain-verification=n0b8SvOmFjFo5XsQryM_ctBNsI3-rVwKtYMU7d5YlX
  • apple-domain-verification=2rIeDhQ5nM0P7R0P
  • facebook-domain-verification=enux1luw6ilrt2pr8bqisi0zmt30lu
  • google-site-verification=HL6iKtLBsqb-Bhbm8D_a0_wFYzaSmYTaPrbr3_L4c5U
  • google-site-verification=_7LdiHTEfzxvKAeBAB9K8aLM75CdEfP1FEFYtAq3gkA
  • google-site-verification=kgoDrq76vNYZKOf6bWnY4lZysdF28twyMlq85sX1R00
  • gucnm6klc8qdp0pkiipthpb359
  • v=spf1 mx a ip4:144.86.165.15 ip4:34.198.201.16 ip4:51.161.116.198 include:_spf.google.com include:_spf.salesforce.com include:spf.mandrillapp.com include:spf.braintreegateway.com -all
  • IPROTA_D63985-XXX
  • _globalsign-domain-verification=1qNwvTrnfWSyToTMRe-GuEe2yrr1o9v_M7TXOF7hGm
Cloud / SaaS Services Detected
Apple Salesforce Mandrill