Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Greenbox Loans Inc.

greenboxloans.com

Discovered 2023-12-14 21:57 UTC
Est. attack date 2023-12-14

Description:

Greenbox Loans is a leader in the residential lending market, with over 70 years of combined experience. Greenbox Loans was founded based on the concept of 'Out of the Box' underwriting of residential loans.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 19

Third Party Employee Credentials: 10


External Attack Surface: 4


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • mx1-us1.ppe-hosted.com. Proofpoint
  • mx2-us1.ppe-hosted.com. Proofpoint
TXT Records
  • ldifl924o4707kh0frt7fde6d2
  • v=spf1 a:dispatch-us.ppe-hosted.com include:spf.protection.outlook.com include:mail.loanoriginator.net include:mailgun.org include:autotask.net ~all
  • MS=4B29C99F4E028290DF5305FF7BBF32A8CE639249
  • Ka8HzhgZq3qmOnF2Sx_m
Cloud / SaaS Services Detected
Mailgun Proofpoint Essentials

Leak Screenshot:

Leak Screenshot