Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Play
Discovered 2025-08-14 21:36 UTC
Est. attack date 2025-08-10
Country US

Description:

United States

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • mx1-us1.ppe-hosted.com. Proofpoint
  • mx2-us1.ppe-hosted.com. Proofpoint
TXT Records
  • ppe-4f6f34e39a4de9a76253
  • MS=ms82452160
  • a46ce747c0a27b01a92646b08e48bcdc
  • v=spf1 a:dispatch-us.ppe-hosted.com include:spf.protection.outlook.com include:spf.ihance.net include:spf.emailsignatures365.com -all
  • openai-domain-verification=dv-5Rp7EeFclLquWmn93YE9gTeW
  • knowbe4-site-verification=2aa44939701dd1bba5833294fc2e38bb
  • MS=ms70878504
Cloud / SaaS Services Detected
Microsoft 365 OpenIA KnowBe4 Proofpoint Essentials

Leak Screenshot:

Leak Screenshot