Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Rairdon Automotive Group

rairdon.com

Group Medusa
Discovered 2024-04-08 08:38 UTC
Est. attack date 2024-04-05
Country US

Description:

Rairdon Automotive Group is a locally owned automotive group with 12 dealerships in the Pacific Northwest Honda of Sumner, Honda of Burien, Nissan of Auburn, Subaru of Auburn, Dodge Chrysler Jeep of Marysville/Monroe/Bellingham/Kirkland, Maserati of Kirkland, Alfa Romeo of Kirkland, Volkswagen of Everett, and FIAT of Kirkland. Rairdon Automotive Group corporate office is located in 16302 Auto Ln, Sumner, Washington, 98390, United States and has 152 employees. The total amount of data leakage is 98.5 GB

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 2


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • mail.datarang.com.
  • mail1.datarang.com.
TXT Records
  • google-site-verification=l6UDrlqf-Nr2yItiOQoFGOBSQTY_nwO7Y0JyLemgOfI
  • v=spf1 a mx ip4:65.61.105.216/32 ip4:65.61.105.217/32 ip4:50.204.69.211/32 ip4:50.205.77.161/32 include:_spf.dealersocket.com include:spf.protection.outlook.com -all
  • v=verifydomain MS=9834291
  • google-site-verification=_XrKH5lwZffyD93HWivIOMWcD5TyI_GbEwipSU4Vldk
  • google-site-verification:p0uvh2iSuCx3Pkh2Hjl8PkW0RWrlr8UeZws2k5XNfvk
  • MS=082B4DC8DCD46C836E0B9A9814D7BC3929D5EC3B
  • google-site-verification=7V8j45Mbj4DoAEWu68eYP38g-4N9EGU1iN-rvVgbNFU
  • apple-domain-verification=tokmig1GwJ2BRIUv
Cloud / SaaS Services Detected
Apple Microsoft 365

Leak Screenshot:

Leak Screenshot