Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

thecsi.com

thecsi.com

Discovered 2023-10-19
Est. attack date 2023-10-19

Description:

CSI provides product life cycle management services including, forward logistics (product assembly, packaging and distribution) and reverse logistics (product refurbishment, repair, and engineering) services to major manufacturers and service provide...

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 5


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • mx3.dnsmadeeasy.com.
  • thecsi-com.mail.protection.outlook.com.
  • mx1.dnsmadeeasy.com.
  • mx2.dnsmadeeasy.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
  • Isc4OBhuoZ05nz+Gs/yrI6wZ0//GUC7pCpO4VFlX6gQ=
  • google-site-verification=1fWihnaxOB_33-AuiiOQUzMyKLAPBvnvceBfZ_o2IJg
  • _0oksrysrymoukansyw6dupfsei98li0
  • f7kv9xfbd56g8y1ww01jv7vbn7zrv6lt
  • 6q2vhx4gg81p7zrgy2kkmbvf782f1qxq
  • jg57lb8nnjr1lbw2s4dx0hw7bdt4wm59
  • _97gtubmd71pc0ojw72akyzufdg60wtw
  • pfw0h3hc73pt98b3wncc593vpcktcsg5
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot