Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Malaysian Industrial Development Finance

midf.com.my

Group Rhysida
Discovered 2024-04-07
Est. attack date 2024-04-07
Country MY

Description:

Malaysian Industrial Development Finance MIDF, established in 1960 and based in Kuala Lumpur, is a financial development institution to modernize Malaysia's manufacturing industries.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 89

Third Party Employee Credentials: 1


External Attack Surface: 10


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domreg@thegigabit.com
MX Records
  • mx2.hc1514-14.ap.iphmx.com.
  • mx1.hc1514-14.ap.iphmx.com.
TXT Records
  • _globalsign-domain-verification=rySrqsW6e6yIbcrTjupy7b-C9qXNCIE_V0Mc2Z2RhW
  • _globalsign-domain-verification=v3BzQUi2t9VEop1xbRgCPuyzVBamImMAWkYDrQzBgh
  • elfb4r05jdosaohfatpl3j6u4n
  • fdnxhfk343wb7q3vx028jb2x6lm74n62
  • google-site-verification=E1QwseHIYEeEUFZLvGRyX0MLHp2fH1gRNcQruQUdCfk
  • _globalsign-domain-verification=K2k6oo2a1ztdB7b73iZOjTkw9CLwDRUXgnVuNwbwiI
  • MS=ms72935299
  • globalsign-domain-verification=eOHxRkrglMz3-PuvjuM-INC0UANtr53KOtlm4aH5E8
  • DDIPSQSA55ERSDUFUFIRO50STL
  • v=spf1 exists:%{i}.spf.hc1514-14.ap.iphmx.com include:spf1.midf.com.my include:%{i}._spf.midf.com.my include:_spf.mlsend.com ip4:202.122.157.34 ip4:210.19.245.210 ip4:175.140.164.162 ip4:210.19.123.74 ip4:210.19.231.162 ip4:202.122.157.66 ip4:103.100.205." "131 include:spf.protection.outlook.com -all
  • MS=ms72175928
  • globalsign-domain-verification=eOHxRkrgIMz3-PuvjuM-lNC0UANtr53KOtlm4aH5E8
  • MS=4E22D8712FC800B238EDA13D8CA1DD8F95D74F2F
Cloud / SaaS Services Detected
Microsoft 365