Finding CF-3031
Medium exposure on my.meridianenergy.example
Mark in progressFalse positive
MediumNew
CustomerDetected 2026-07-13 11:26Seen 4× across sourcesCredential evidence
Passwords are masked — full values require reveal permission- Identity
- [email protected]
- Login URL
- https://my.meridianenergy.example/account
- Password
- Zr2••••••••••
- Matched asset
- my.meridianenergy.example
- First seen in log
- 2026-07-11
Infected device
- Device
- DESKTOP-A6C3N9
- Operating system
- Windows 11 Home 23H2
- IP at capture
- 198.51.100.41
- Country
- Netherlands
- Infected at
- 2026-07-11 11:39
- Antivirus
- Defender (active)
Source block
- Block
- BLK-88093
- Stealer family
- Raccoon
- Posted
- 2026-07-11 05:41
- Channel
- Underground forum listing
- Lines in block
- 1,119
Related findings
Triage timeline
2026-07-13 11:26 · System
Finding created from stealer block and matched to asset my.meridianenergy.example
2026-07-13 11:26 · System
Severity set to Medium based on asset criticality and credential context
Awaiting next analyst action