Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Alliance Technical Group

Group: Medusa

Discovered by ransomware.live: 2024-11-07

Estimated attack date: 2024-11-05

Country: US

Description:

Alliance Technical Group - company provides solutions problems of environmental management and compliance for some of the foremost companies and brands in North America. Alliance Technical Group corporate office is located in 255 Grant St SE Ste 600, Decatur, Alabama, 35601, United States and has 1,400 employees. The total amount of data leakage is 1.2 TB



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@tucows.com
MX Records
  • alliancetg-com.mail.protection.outlook.com.
TXT Records
  • pardot368331=ea40f99b86bf0f69baa64110b167d67f9f5c2480324071cd11f79eff4f47f8b0
  • sending_domain368331=d596ca2f1000cecf1e253c9314c2e36e10202a2d3c332a47c5137154f36fd600
  • box-domain-verification=332db4a4df5d0ea0a7da0364fb2342a248ca7398e6354830d85d3b3a26760e00
  • smartsheet-site-validation=kybEjb29dEwVXb6qOaf7yuCJ3UvjUvJF
  • bw=UR9B3G4wK4jLQagprrKUflTzGChKxeNLd7PGoyy16Jc0
  • duo_sso_verification=mkVSeDT0O5qZSWG70Qm57XMFXDVwSw1QAXxNwpl37vQ6L9fIv8cxo2vC4N5ZS0bn
  • v=spf1 ip4:192.40.186.56 include:spf.protection.outlook.com include:spf.smtp.com include:spf.salesforce.com include:spf.ultipro.com include:spf.tipalti.com include:relay.mailchannels.net ~all
Cloud / SaaS Services Detected
Salesforce Box Cisco Duo

Leak Screenshot:

Leak Screenshot