Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Advance2000

Group: Bianlian

Discovered by ransomware.live: 2023-02-11

Estimated attack date: 2023-02-11

Description:

Full-service managed IT service provider specializing in Private Cloud Computing.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • d36721b.ess.barracudanetworks.com.
  • d36721a.ess.barracudanetworks.com.
TXT Records
  • j7td0kj90u3c27fcuq2nuenpbn
  • duo_sso_verification=yKDreWNlRxnIgIgT2x1pqzdHw4Ow7R175cpgGUZajRUt6FvVEMlEIAeQS9eo4BRL
  • google-site-verification=NDF38oJpN5HXzEO-54o4_6rUVRvdJbUs0GImOLLcTOI
  • sophos-domain-verification=354d8aa724af5a80effdecdf31208ef6b13f2a313b74618fcbd34a8af3756221
  • fe3fae8f6a3f49539d8f1f88f0932048
  • v=spf1 ip4:74.112.122.68 ip4:52.179.8.187 ip4:74.112.121.103 ip4:74.112.122.105 ip4:74.112.122.116 ip4:74.112.122.122 ip4:74.112.122.125 ip4:74.112.121.100 ip4:74.112.120.30 include:spf.ess.barracudanetworks.com -all
  • sophos-domain-verification=ba05f5d4a199bd36b0392475fc790c4f1653788fde43c6485c59534388113ba2
  • sktvn3jt45vttdn75qo3oap415
  • jk2qnke5luj1bhriirjir17m96
  • sophos-domain-verification=fc20b73bc260d1c011c9d7d034a75b7cd0dba192479e805e4a5f755556c1853c
  • fc8lad9rlb15g5c3oo3daljcut
  • sophos-domain-verification=20e8732f6085e8ade565a5bb102260d76f12da457704c55094cca1a11d76b99f
Cloud / SaaS Services Detected
Cisco Duo Sophos