Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Play
Discovered 2024-03-11 17:48 UTC
Est. attack date 2024-02-29
Country US

Description:

United States

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • mx2-us1.ppe-hosted.com. Proofpoint
  • mx1-us1.ppe-hosted.com. Proofpoint
TXT Records
  • v=spf1 a:dispatch-us.ppe-hosted.com include:spf.everycloudtech.us ip4:198.24.113.214 ~all
  • MS=ms37800457
  • ppe-95d29fb9d815d44bd116d82967ad9a28ea2944c9
Cloud / SaaS Services Detected
Microsoft 365 Proofpoint Essentials

Leak Screenshot:

Leak Screenshot