Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Advantage Resourcing

Group: Akira

Discovered by ransomware.live: 2023-05-19

Estimated attack date: 2023-05-19

Description:

Advantage Resourcing specializing in multiple human capital management services including contingent staffing, direct & permanent hire, on-site staffing management services, and others. This company lost its advantage as we obtained some of its resources and are ready to upload it here. Their contingent couldn't manage their network properly and lost 916gb including databases.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • advantageresourcing-com.mail.protection.outlook.com.
TXT Records
  • knowbe4-site-verification=474842cb0142dbbd1d7f9f47966aeb94
  • m40a5jRJIXe1fN+WDTaavS51EwFkRFnDQ1gLtLiSwDN7JNEUKIJP1e6r/pU7aj3EfP8/yHZOVsUb9Jebm/dmYw==
  • v=msv1 t=E3E9DAA5-163E-4081-B43A-2A64D5B543BA
  • v=spf1 mx ip4:199.107.36.130 ip4:213.212.125.57 ip4:199.107.36.1 ip4:194.73.227.66 ip4:5.148.130.107 ip4:213.212.125.7 ip4:148.163.135.62 ip4:148.163.139.98 ip4:208.81.212.0/22 include:spf.protection.outlook.com include:spf.jobdiva.com include:sendgrid.ne" "t include:spf-00344301.pphosted.com ~all
  • ziprecruiteroptin
  • 0ed1fe018a121a2d40ec6d48aab991ef4db0d3bad4
  • 0ed1fe018a2ba601a8462344ff8e454900bc86bdb1
  • MS=ms44630832
  • MS=ms71878277
  • Rmzu0O9pO5jTzEMP1bMgsbtwm/6cDcNQZl2wbbJMiyzzZBM/2t0BdwzwAB12nwlaxCrqTPMCIJrW+TYjGpqAUw==
  • google-site-verification:9UqiWYGApKs_-9cAhNVNBGvpMbuiheOenANdKdJpgDw
  • google-site-verification=J3aIDr6E5Xz4q1k2pgWbqlRyqB1MsiFVTU0vP3QYlJw
Cloud / SaaS Services Detected
Microsoft 365 KnowBe4 Proofpoint