Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Aranui Cruises

Group: Medusa

Discovered by ransomware.live: 2023-08-30

Estimated attack date: 2023-08-30

Country: US

Description:

Aranui Cruises is the oldest cruise operator in French Polynesia, having been founded 35 years ago. The company has a ship made to order ship "Aranui 5" designed for VIP level cruise holidays. The American office of the company is located at 2028 El Camino Real So Te B, San Mateo, California, 94403, United States



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aranui.com.
  • alt1.aspmx.l.google.com.
  • aspmx3.googlemail.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • 11.12.2025
  • v=spf1 ip4:91.121.13.179 ip4:54.38.81.122 ip4:54.36.123.115 ip4:5.135.139.61 ip4:135.125.3.39 ip4:193.70.69.91 ip4:162.19.61.153 ip6:2001:41d0:203:1d73:: ip6:2001:41d0:8:cc3d:: ip6:2001:41d0:203:9727:: ip6:2001:41d0:203:2f7a:: ip6:2001:41d0:203:ce99:: inc" "lude:_spf.google.com ~all
  • MS=8BA4F601D9EEB25C9B2F1E857786BF80EA8A282E
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot