Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Alliance Technical Group

Group: Medusa

Discovered by ransomware.live: 2024-11-07

Estimated attack date: 2024-11-05

Country: US

Description:

Alliance Technical Group - company provides solutions problems of environmental management and compliance for some of the foremost companies and brands in North America. Alliance Technical Group corporate office is located in 255 Grant St SE Ste 600, Decatur, Alabama, 35601, United States and has 1,400 employees. The total amount of data leakage is 1.2 TB



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@tucows.com
MX Records
  • alliancetg-com.mail.protection.outlook.com.
TXT Records
  • box-domain-verification=332db4a4df5d0ea0a7da0364fb2342a248ca7398e6354830d85d3b3a26760e00
  • bw=UR9B3G4wK4jLQagprrKUflTzGChKxeNLd7PGoyy16Jc0
  • v=spf1 ip4:192.40.186.56 include:spf.protection.outlook.com include:spf.smtp.com include:spf.salesforce.com include:spf.ultipro.com include:spf.tipalti.com include:relay.mailchannels.net ~all
  • smartsheet-site-validation=kybEjb29dEwVXb6qOaf7yuCJ3UvjUvJF
  • pardot368331=ea40f99b86bf0f69baa64110b167d67f9f5c2480324071cd11f79eff4f47f8b0
  • duo_sso_verification=mkVSeDT0O5qZSWG70Qm57XMFXDVwSw1QAXxNwpl37vQ6L9fIv8cxo2vC4N5ZS0bn
  • sending_domain368331=d596ca2f1000cecf1e253c9314c2e36e10202a2d3c332a47c5137154f36fd600
Cloud / SaaS Services Detected
Salesforce Box Cisco Duo

Leak Screenshot:

Leak Screenshot