Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Du

Group: Dragonforce

Discovered by ransomware.live: 2025-11-21

Estimated attack date: 2025-11-20

Country: AE

Description:

Emirates Integrated Telecommunications Company P.J.S.C., commercially rebranded as du in February 2007, is one of the two main telecom operators in the United Arab Emirates. du offers fixed line, mobile telephony, internet and digital television services across the UAE. It also provides carrier services, a data hub, internet exchange facilities and satellite service for broadcasters. It expanded its services in support of economic and social transformation of UAE and operates subsidiaries such as EITC Investment Holdings Limited, Edara (Telco Operations FZ-LLC), Smart Dubai Platform Project Company LLC and EITC Singapore PTE. LTD.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • du-ae.mail.protection.outlook.com.
TXT Records
  • facebook-domain-verification=ihnkstxbwmuzlrvceysmmo7r6xun90
  • google-site-verification=tTCPoXpiurc-5DI3hBblbR7EOu4LjChnlfZWsFRFCS0
  • apple-domain-verification=K5nMSDT8A92xRzfo
  • v=spf1 ip4:5.32.4.138 ip4:94.201.53.55 ip4:5.32.6.138 ip4:213.132.63.42 ip4:213.132.63.41 ip4:213.132.63.62 ip4:80.227.220.158 ip4:80.227.220.159 " " ip4:213.132.63.61 ip4:80.227.220.160 ip4:94.201.251.102 ip4:212.132.63.42 ip4:212.132.63.150 ip4:212.132.63.151 ip4:212.132.63.173 ip4:94.201.51.186 ip4:213.132.45.136 " " ip4:80.227.68.192 ip4:104.193.137.209 ip4:104.193.137.4 ip4:104.193.137.41 ip4:185.84.1.202 include:spf.protection.outlook.com include:spf_c.oraclecloud.com ~all
  • miro-verification=3c522be97640bbd0553a8aba45978a8184641a70
  • pcclkcn07pq2hp7bcxj8k19d3m79230p
  • MS=ms18502732
  • detectify-verification=40ca07ad1c44061f23440548f3a3b610
  • _gnhmtyh5ru5n0o1jzrxm3tktels4ha2
  • 12b636lm7z1wl4hchd246lzkx128yn10
  • 0vxln6vx23hqbp4tsgbmvgmv67q8bmbg
Cloud / SaaS Services Detected
Apple Microsoft 365 Miro Oracle Cloud

Leak Screenshot:

Leak Screenshot