Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo 4murs.com

Group: babuk

Discovered by ransomware.live: 2023-07-31

Estimated attack date: 2021-06-15

Country: FR

Description:

The Babuk v2.0 new


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 413

Third Party Employee Credentials: 0


External Attack Surface: 61


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse ovh.net
MX Records
  • mx.avalon.powermail.fr.
TXT Records
  • 1password-site-verification=VPLJGE6NJJCW7ELP3HERA23HE4
  • apple-domain-verification=TWDkqzoU2v4eRnGO
  • v=spf1 include:spf.protection.outlook.com include:spf.powermail.fr include:spf.mailjet.com include:mail.zendesk.com include:sendgrid.net -all
  • MS=ms26828117
Cloud / SaaS Services Detected
Apple Microsoft 365 Zendesk Mailjet SendGrid

Leak Screenshot:

Leak Screenshot