Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Americold

Group: cactus

Discovered by ransomware.live: 2023-07-20

Estimated attack date: 2023-07-20

Country: US

Description:

AmeriCold Logistics LLC is a major temperature controlled warehousing and transportation company based in Atlanta, Georgia, United States. It is in the business of modern commercialized temperature-controlled warehousing for the storage of perishable goods.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • mxb-00218e02.gslb.pphosted.com.
  • mxa-00218e02.gslb.pphosted.com.
TXT Records
  • docusign=4f98b1a9-4c15-4807-9b31-b171c2511427
  • MS=D7EA521EBD4D092B327B9F041337E9A04FB04C43
  • intersight=821bf42235c4f34f142a3cb2f86489d2da44e3a921e3c9a1b97df4d742cf782f
  • QGN4E8A2J1FFS7IMNMW3GT24WHN1UV2GRWTCGXLE
  • rq04o0gimi5bh5ml22dk64r9g5
  • smartsheet-site-validation=wjLuoVZtCKDIQFAHbtRQR0YSI1q0gq_v
  • google-site-verification=i5YvUlZx75mawifHyZcBenCoh9YtYv07LfpaVOMpnEc
  • u8W+5wsuV8Lp78vvZPhHDKBWJGF9d6+01whk0wJGI1Z2+dq++LQZjywC2iMJSLyVttQMVMMmxOaH2rC2KscSGw==
  • google-site-verification=1a4tsGpgs4NtHSE11Oey522kPTyVYzBm11HLJe3gncw
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com ~all
  • 17dc98c6-58bf-4a80-8b22-f978e693ee6b
  • verification=35d4add0-4be8-4a6d-b18f-7e5483c6e78b
  • 268588ff1943490085c7db821c09d6ea
  • 00e1aa7b-17ea-4f43-a7a6-752dc136902b
  • ppe-0d0c3d7b085d8bcbabec8b884aecc8697decf85d
  • logmein-verification-code=8VRyzd8i6CKVeVVh6iLoZwu9t
  • cisco-ci-domain-verification=4a7f873e6dd937db742fa6e8639b05eef60a877fbb72dbfbaf2fb788e748f781
  • 5d0765ab-8e8b-4ee6-b73c-6186f0999b52
  • google-site-verification=uDdDIDZ6AhmKF3xawPajrK1PqnW8Pa9K8_Zm2mrX5eo
  • google-site-verification=MMtFuG0HmunCGs89wq4D9vrOF6_pOSS7IL0Es9PPKAw
  • 2e9c3744-6681-4edb-bf50-0bdfb70d471f
Cloud / SaaS Services Detected
LogMeIn Cisco DocuSign Proofpoint

Leak Screenshot:

Leak Screenshot