Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Datawatch Systems

datawatchsystems.com

Group Akira
Discovered 2023-08-03
Est. attack date 2023-08-03

Description:

Datawatch Systems experts work in partnership with you to design,install, and operate a security system to safeguard your facility. It's frustrating when one tries to save someone's property andbecome a victim for himself. We took from these experts 100 GB of data containing confidential agreements and contracts, personal documents, customers data and their projects details. Watch your data! Uploading is coming.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 7

Third Party Employee Credentials: 1


External Attack Surface: 6


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • datawatchsystems-com.mail.protection.outlook.com.
TXT Records
  • 9HxkxE7h
  • exlKoIkbIaiG5CvSDvXFrnN0WRYisMefigKxsJ/Y96xUctIuFlQutjSfuLwHJz9UtMl1QNiQyshoPxhe99OluA==
  • MS=ms15433690
  • google-site-verification=qpOcMHpA8YqR-4TNyhiYOBaBqhgXBLAa8Y7iZqxlELw
  • v=spf1 ip4:70.32.23.104 ip4:159.183.172.153 include:servers.mcsv.net include:amazonses.com include:spf.protection.outlook.com include:spf.constantcontact.com include:spf.mandrillapp.com -all
  • MS=ms98530746
  • mikevbj7arbsocn7dl0mnsrbsr
  • twilio-domain-verification=be253ae5bd0da2761a30c715bc50682d
Cloud / SaaS Services Detected
Amazon SES/WorkMail Mailchimp Microsoft 365 Mandrill Twilio