Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo ECA-USA.COM

Group: Clop

Discovered by ransomware.live: 2026-01-25

Estimated attack date: 2026-01-25

Country: US

Description:

[AI generated] N/A



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • us-smtp-inbound-2.mimecast.com.
  • us-smtp-inbound-1.mimecast.com.
TXT Records
  • scrbfm6jn0vtsbl66dntdmpcfe
  • rijb6nj5tp6h1la1hd5r8d3rij
  • duo_sso_verification=zU2ejlE0f8pfPNBu5OUOdICKJ3UI1rRM1aAUtF9N1NdyVnADPGtAsMINdYHE1fm5
  • mhes35f7ljq478cek10l0u4jau
  • google-site-verification=tD1qGyQY0e7B_kTqXscGVG1Ns7XFP6-ih43TyEf9iY8
  • jkntbvc1nccqi8t3dflhorjba6
  • notion-domain-verification=b0QUOrGwBzd0AllrvX7BtgSs51glmEhy92srNnbhvJs
  • 1mrh3ru3iqov8r5j87fsoqo20s
  • openai-domain-verification=dv-0taaKERjGy8AmdFSUVVn4dHI
  • v=spf1 include:us._netblocks.mimecast.com include:spf.protection.outlook.com ip4:50.241.2.129 ip4:96.71.77.85 ip4:68.115.244.6 ip4:50.248.247.157 ~all
Cloud / SaaS Services Detected
Cisco Duo Mimecast

Leak Screenshot:

Leak Screenshot