Group:
Blackbyte
Discovered by ransomware.live: 2023-01-16
Estimated attack date:
2023-01-16
Description:
ARC is committed to delighting its customers with document imaging and graphic production services that help visual communication professionals do what they do best.We provide world-class service to more than 90,000 customers, including some of the biggest brands in the world. Our people work side-by-side with professionals from the most renowned companies in Hollywood, prestigious and demanding retail outlets, as well as facility managers of some of the biggest school districts in the country who use visual communication to educate their students and staff on health and safety in public areas.No matter where you look, you’ll find us striving for excellence in design and construction, education, healthcare, marketing, manufacturing, technology, sports, and hospitality.
DNS Records:
The following DNS records were found for the victim's domain.
- domain.operations@web.com
- earc-com0c.mail.protection.outlook.com.
- google-gws-recovery-domain-verification=61899633
- airtable-verification=82b6a7dfbf02d9476ef8caae204b2460
- amazonses:sId2mNbCofgGH0ltSBR+xY/1+qaFwXDgdPVm79y+X7Q=
- google-site-verification=6LvP-MsDDh-WRFpc4jS4ewFO9Q4QzrtJler2p45BUUI
- google-site-verification=YJLZN88osc5dY_0FJFfqQa_z_kwrtY-NqzeSL-u1M3g
- pardot_273582=cb61be599074b02f2108db2d309578344d5cec897ca9b823802c65fe5d81bcd0
- duo_sso_verification=v7Pc3z27dsA4YfeMfUBhxUg7zIP2hZNGOpbYn0SdWgkUuZobNItZuX3aO0XJyGoQ
- v=spf1 ip4:216.241.87.0/24 ip4:216.241.88.250 ip4:66.94.67.48/28 ip4:216.151.86.128/29 ip4:199.255.192.0/22 ip4:199.127.232.0/22 ip4:54.240.0.0/18 ip4:69.198.239.161/28 ip4:69.25.110.57 ip4:216.151.85.132 ip4:216.151.85.133 include:spf.protection.outlook." "com include:jangomail.com include:emailus.freshservice.com include:servers.mcsv.net include:6725547.spf03.hubspotemail.net include:mailgun.org -all
- apple-domain-verification=kF0lSRLFRXmrTmHm
- google-gws-recovery-domain-verification=61825635
Cloud / SaaS Services Detected
Apple
Amazon SES/WorkMail
HubSpot
Mailchimp
Mailgun
Cisco Duo
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.