Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo DPA Auctions

Group: qilin

Discovered by ransomware.live: 2025-02-03

Estimated attack date: 2025-01-24

Country: US

Description:

DPA Auctions, headquartered in Fremont, Nebraska, and established in 1972, is a heavy machinery online auction company offering products for the agricultural, construction, and transportation industries


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 23

Third Party Employee Credentials: 0


External Attack Surface: 4



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • dpaauctions-com.mail.protection.outlook.com.
TXT Records
  • sophos-domain-verification=1b11fa6e0d69e9c1cfd0638da48448d45bdfcb5438eaa84a7b1ac7e3fc3df9c5
  • google-site-verification=VLa9ZwXY46sqbwhmj6Dm5mmzc2B-AdNbLCj06YIrMsI
  • google-site-verification=xhFyoX49tGsGouEsm97r8p6zXne5tuJg8Qu8DE29Xfc
  • MS=ms44425242
  • v=spf1 ip6:2600:3c03::f03c:91ff:fe5c:d18a/64 ip4:66.228.38.171/24 ip4:76.79.13.30 ip4:35.174.145.124 ip4:64.64.146.241 ip4:45.79.177.170 ip6:2600:3c03::f03c:91ff:fef1:1ea0 ip4:76.79.13.30 include:spf.protection.outlook.com include:spfa.cpmails.com include" ":spf.constantcontact.com -all
Cloud / SaaS Services Detected
Microsoft 365 Sophos

Leak Screenshot:

Leak Screenshot