Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Encompass Technologies

Group: Bianlian

Discovered by ransomware.live: 2023-04-13

Estimated attack date: 2023-04-13

Description:

Cloud-native ERP, CRM, eCommerce, & data-driven insights for the beverage industry. At Encompass, we’re revolutionizing the beverage supply chain as no other provider has before. By digitally connecting producers, distributors, and retailers, our ERP SaaS and technology solutions streamline operations, simplify decision-making, and equip businesses for success in a fast-changing market.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 0


External Attack Surface: 3



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafety@support.aws.com
  • c6c02302-1b15-48ea-a48e-753d117963f5@identity-protect.org
MX Records
  • alt4.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • google-site-verification=4WUi3KgkGsmkRz7fgiI5s9H-q1YISAtjP827RnnHhz8
  • status-page-domain-verification=dfkm70y5lvvw
  • v=spf1 a mx include:_spf.google.com include:amazonses.com include:stspg-customer.com include:53981.spf05.hubspotemail.net include:mail.zendesk.com ~all
  • 1350570
  • ZOOM_verify_LK3Nd1jtEEZdjjBDDP46V2
  • slack-domain-verification=ib4406XMjjbP6BmO8sr3dLaxr8R0t34FnahznTkh
  • atlassian-domain-verification=ZaiRoS0c8TWp7GgakYmp5AXZrminhJQk/gH/QAn2uTGUBUJarlaXUZBML/X7mZc7
  • google-site-verification=tN3fD8uE4tASxxmn6_0ghV_wPjMNkfq6L0VIE3dwA9c
  • canva-site-verification=2i6O0GdWp_-JYJ6Q_dnHuA
Cloud / SaaS Services Detected
Atlassian Amazon SES/WorkMail HubSpot Slack Zendesk Zoom

Leak Screenshot:

Leak Screenshot