Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo AIRLIQUIDE.COM

Group: clop

Discovered by ransomware.live: 2025-02-10

Estimated attack date: 2025-02-10

Country: FR

Description:

[AI generated] Air Liquide is a multinational French company founded in 1902 and currently headquartered in Paris. It is a world leader in gases, technologies, and services for industry, health, and the environment. The company supplies various gases like oxygen, nitrogen, and hydrogen to a diverse range of industries including medical, chemical, and electronics. It operates in 80 countries, managing numerous R&D projects to aid in sustainable growth.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
TXT Records
  • DomainVerification=GK72EKDV0358GBV4TC1X97Z1YFY93FJ885TE7JVFAU1HY130LM11TNJHIVJT6776
  • sending_domain547722=3aecab2d1b61a9309dd8671fbc6f2f136e00408fcb44597536b585927974bc20
  • zscaler-verification-163706060-6122025-ixzStPShRD
  • XOkUMOFOgdPbvM0QbZim5QQAxgA=
  • google-site-verification=70jynJJFtnvwaZfDuBlc8DcHbQTu3rk9CYgXbXV5Cxk
  • v=spf1 include:spf2.airliquide.com include:_spf.salesforce.com include:mail-jet.airliquide.com include:_spf.google.com -all
  • docusign=efb7c98e-ab2c-49aa-acdb-443d77c8fc03
  • google-site-verification=_2fK_J2uVPYZXRksRDxhSxjbJkSlxMfw7fKopEAands
  • pardot547722=5ee2e782012dd8b02210a02f668bb463b25ab585fc30a6d16758289ae2ad03b4
  • read-ai-verification = 018d802d-8bd7-7931-bc4e-d8e0ddd9b0ae
  • sending_domain1053103=12f111ce5d29380014c0a9a46424070ce4c1cf8a64268c571c0e30c3fd1c4846
  • sending_domain1081563=cadda1b2772cad8757a1a9781e3af9b31617e11c4c509e2e7ad7bc6fd29cb61d
  • cisco-ci-domain-verification=635df2a5026cbcfd19288e450e273e124af5523ac78c7a7e275ff46a67c189df
  • sending_domain909242=b4e53341f6f897ed206763dd462af7c3bc3602688a0fd98d55437c46aee6d7b3
Cloud / SaaS Services Detected
Salesforce Cisco DocuSign

Leak Screenshot:

Leak Screenshot