Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

SCHAWK.COM

SCHAWK.COM

Group Clop
Discovered 2025-02-27 17:30 UTC
Est. attack date 2025-02-27
Country US

Description:

[AI generated] Schawk is a global brand production and deployment company that works to protect brands by ensuring that they are consistent and compelling across all touchpoints. They provide services like brand strategy, graphic design, packaging development, and digital asset management, serving diverse industries like retail, food/beverages, healthcare, etc. Established in 1953, the company also offers brand consulting service.

Infostealer activity detected by HudsonRock

Compromised Employees: 8

Compromised Users: 23

Third Party Employee Credentials: 24


External Attack Surface: 27


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabusecscglobal.com
MX Records
  • mxa-00645501.gslb.pphosted.com. Proofpoint
  • mxb-00645501.gslb.pphosted.com. Proofpoint
TXT Records
  • 6DSzcyJQOne0IXDxzzv+eBjWxr4DTLx53pxX4gLprpVeJzildlL2e3nggC9kH/GASwEt84MeR1R09GoJn9uAiw==
  • BDD37E36FC73D3F866C7755EFAF131C50
  • MS=ms25170224
  • \"v=spf1 ip4:66.151.5.11 ip4:66.151.5.12 ip4:66.151.5.13 ip4:64.94.183.11 ip4:64.238.200.196 ip4:66.151.5.113
  • adobe-idp-site-verification=af0eae1b-7c80-4fae-aafa-ab31711bacf4
  • apple-domain-verification=PR0wrheDBble2OmW
  • apple-domain-verification=vzbpefIcY9Y9qYuP
  • include:spf.protection.outlook.com include:mktomail.com include:relay.mailchannels.net include:amazonses.com include:spf-00645501.pphosted.com ~all\
  • v=msv1 t=76EC1935-217B-4CF2-BA21-C016AB635614
Cloud / SaaS Services Detected
Adobe Apple Amazon SES/WorkMail Microsoft 365 Marketo Proofpoint