Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ALOHACARE.ORG

Group: Clop

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2023-07-26



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx-02-us-west-2.prod.hydra.sophos.com.
  • mx-01-us-west-2.prod.hydra.sophos.com.
TXT Records
  • sophos-domain-verification=80141862f51234470a6c77a52ec91f11d0916b63
  • v=spf1 ip4:4.15.161.100 ip4:4.15.161.106 include:spf.protection.outlook.com include:servers.mcsv.net include:sendgrid.net include:verity.cloud include:_spf_uswest2.prod.hydra.sophos.com ~all
  • smartsheet-site-validation=fpJwR5p9wEke2R1EE-r8ZrQ4UhX9el2P
  • 8HRHx3mz44M10eSRDjkULn1zYv7IaIFW85A3HL6UIb3BZY5NcAuuXuOp4vfNSJekku2DUKoSjB1x71MOberWKw==
  • ZOOM_verify_qaRVB83GRpydqqwe3L48MA
  • google-site-verification=X19gBp178d2kBg-YPicCkpFe6tkdPK3RFJKBQGfAl9M
  • ss7jcpivb2sr0rsso74vnge4ii
  • 1password-site-verification=K524ZWTSVJAZFIOCBQYG3V3XCI
  • bd2krcrnevbcsfa92dtgpaif1g
  • google-site-verification=DkO9RKDhgRuNirfIS-dK3xEsLZheKmyCw-kOGw9dGH0
  • d4r7ekhhfpumuf5ufej2tvegjq
  • avrtkro4omm19c8ppbrv252r60
  • google-site-verification=S13gzlCAIpg1D14otXwRRp4H1HTvPNy79ira1vuwJUc
  • sophos-domain-verification=d1d4e1df9df349c7d91b8ee434b4484d707d8e289f7143c988bf1fcde83cb237
  • apple-domain-verification=haGTkKtCJPqu01gQ
  • F1CF-C138-90A8-85A8-2E69-1D84-0A48-F9CD
  • MS=0C64B621CAD593C33F8072931AC9DF5849471029
  • DUC81KTKPPJ83SF3H4LVBAMIOH
  • sjuauf38an9fdt7svndj57nrcb
  • 4lokdl1j3kma8dvpofcbjko8v2
  • adobe-sign-verification=607c51259182bdf6e2cac889d5661f0f
  • duo_sso_verification=Ly929UreTbE9s95wNOkj74xRyCuYs8nnCJsxNu8Mdf4dUc8Vzm3XDjkFy6DEAp9M
Cloud / SaaS Services Detected
Apple Mailchimp SendGrid Cisco Duo Sophos Zoom

Leak Screenshot:

Leak Screenshot