Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

ELKAY.COM

ELKAY.COM

Group Clop
Discovered 2025-11-21
Est. attack date 2025-11-21
Country US

Description:

[AI generated] Elkay is a leading global manufacturer of high-quality products for homes and businesses, including sinks, faucets, bottle filling stations, and water coolers. Founded in 1920 in Chicago, the company remains a family-owned business and caters to various sectors including residential, commercial, industrial, and public facilities. They are known for their commitment to innovation, design, quality, and exceptional customer service.

Infostealer activity detected by HudsonRock

Compromised Employees: 6

Compromised Users: 2

Third Party Employee Credentials: 13


External Attack Surface: 9


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • mxa-001d7002.gslb.pphosted.com.
  • mxb-001d7002.gslb.pphosted.com.
TXT Records
  • google-site-verification=XEDRrScuHFGs5nQCRUu5ywcUmbGMxBjKwPEefJ5n41M
  • WrT4Wasb3IucwqHuxNHzHLPTiNrpUK+pA9gS7H3Yl61CV9zP/FP2/MXbqYDFM0kwUfsnJVCFKdI/5Wg4k88v8A==
  • 4bksjggh148ij88c5dprud443p
  • amkq8ipcu3sqtvb7dtecg5lkem
  • box-domain-verification=eb08d035d3b887dee0ac20c751a1ac6ea315058240e37522a2164916c075aed4
  • openai-domain-verification=dv-8sZLcL6AorUi0wZuIT21fvq8
  • facebook-domain-verification=2xrd6b4ebbl16o9444mcti6wzzzx06
  • anthropic-domain-verification-dt05gf=zHhd2WKxkWJYd1teG5UXQgP5I
  • ja6n3ddgvfll6enpthdghlj4nc
  • google-site-verification=3kc2JOczHkft1VFfN6kbyrefyr97lXrUXS-V9iG_8jg
  • apple-domain-verification=irb0p5GSb20X7JFa
  • google-site-verification=Ly5kMkD5TJqUYtaamqJI-7Bl_4XAuV6shbdZjTBFHGg
  • MS=ms97845339
  • tucmq8gi0d26k4qtv799mjn50i
  • canva-site-verification=BxMcpeUQislSu05bCRUHVA
  • google-site-verification=W3j1_3nREoRLfJcCPFs0MsdpQtcesP3r9pBUO_41uIU
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • MS=ms41377735
  • smartsheet-site-validation=MLc2b0Oge1q-wxvUcyw5NJFjg_d4eT9C
  • knowbe4-site-verification=25cfeb5bcbbef547fe8b4f1da6197f37
  • google-site-verification=xiAGQKCx6D6I13o-YZZv7abQ1AfJCjN2R7atkIfmE3Q
  • 00d6a0000030aajuae
  • google-site-verification=tQrVg-4wouyg7xCgWbkL0K0wyI92_rCgvZXOx9l9Rwk
  • cgbqddk4aol5cnnjg60l8s95g3
  • google-site-verification=7PmcCbu3XOB2CMrFxcnk2RGOt77IVMND0vCDM3yUsGo
  • google-site-verification=aKP_l5PIN_bAN0HDeuJIKEE-FeAAE2X8TSWWKXKnimc
Cloud / SaaS Services Detected
Apple Microsoft 365 Box KnowBe4 Proofpoint

Leak Screenshot:

Leak Screenshot