Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

ZANACO.CO.ZM

ZANACO.CO.ZM

Group Clop
Discovered 2025-11-07
Est. attack date 2025-11-07
Country ZM

Description:

[AI generated] Zambia National Commercial Bank Plc (ZANACO) is a major bank in Zambia. Founded in 1969 by the Zambian Government, it was initially designed to promote national interest in the financial industry. Its services range from personal and business banking, digital banking, to investment banking. The bank caters to both individual and corporate clients, striving to contribute to the country's economic development through innovative banking solutions.

Infostealer activity detected by HudsonRock

Compromised Employees: 18

Compromised Users: 575

Third Party Employee Credentials: 14


External Attack Surface: 50


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • admin@zamtel.zm
MX Records
  • zanaco-co-zm.mail.protection.outlook.com.
TXT Records
  • v=spf1 a mx ip4:196.41.74.137 ip4:192.254.121.248 ip4:196.41.74.170 ip4:196.41.74.133 ip4:196.41.74.50 ip4:41.175.25.218 include:spf.protection.outlook.com include:_phishspf.knowbe4.com include:spf.US.exclaimer.net -all
  • MS=ms22905935
  • UlWpOswjfPVu2AZ13E/ZZhmkMi/ZHWN6HOkvxgFoW1E7ZaUTUr9DBqXLROcx0RFmTSbMYFjbogXzn/LEOECWBw==
  • ns1.bdm.microsoftonline.com
  • ns2.bdm.microsoftonline.com
  • ns3.bdm.microsoftonline.com
  • ns4.bdm.microsoftonline.com
  • rovag_verification_token=E28CA4A774EB459DA4EED82855A197FF
Cloud / SaaS Services Detected
Microsoft 365 KnowBe4

Leak Screenshot:

Leak Screenshot