Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Destination Toronto

Group: play

Discovered by ransomware.live: 2025-04-14

Estimated attack date: 2025-04-03

Country: CA

Description:

Canada



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • google-site-verification=qIylfQ1c8hey_SXfoSLm0-RneY-rlAUM1KiBI6GK7Y4
  • google-site-verification=TSWnNFwRv3mtjz-Oh9yCpcdbpJi0y9c44utcFddguwI
  • MS=ms94052794
  • intacct-esk=2D9A67F4EA97A99DE0633C06540A129C
  • MS=8972EBDD502358BFD877D807A7AA79872A01120E
  • amazonses:5WYUUJPWcqCfX9ykdAG/6wzbRlH97z2aHsgdmEAOopM=
  • ZOOM_verify_uuNjJCgaR6iOE_bXaQrkNg
  • v=spf1 include:_spf.google.com include:_spf.simpleviewinc.com include:_spf.act-on.net include:_spf.intacct.com -all
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot