Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Rhysida
Discovered 2024-05-22 21:15 UTC
Est. attack date 2024-05-22
Country US

Description:

ICC ICC is a structured cabling solutions manufacturer of copper & fiber optic connectivity products for commercial & residential applications More

Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 0

Third Party Employee Credentials: 12


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • icc-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=2aMK4hGuCHOiMjsHm3atGpiVqPIAgFlvugcSpne0NN8
  • v=spf1 a mx ip4:162.254.161.132 mx:mail.icc.com include:spf.sendinblue.com mx include:spf.hornetsecurity.com include:spf.protection.outlook.com include:_spf.wpcloud.com ~all
  • MS=ms27251506
  • Sendinblue-code:2515c9fc360a9b32d7abfd69b4fd14fb
  • atomic-domain-3d3763671ede8472b0f9657e9e4a020ca02d348b21075be17c19b7c416660415
Cloud / SaaS Services Detected
Microsoft 365 Hornetsecurity Sendinblue

Leak Screenshot:

Leak Screenshot