Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Easy Automation

Group: Blackbyte

Discovered by ransomware.live: 2023-04-22

Estimated attack date: 2023-04-22

Description:

Easy Automation Inc. (EAI) based in Welcome, Minnesota, specializes in serving the feed automation needs of commercial and farm customers. EAI designs, manufactures, and markets computerized mill automation systems, feed manufacturing equipment.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • easyautomation-com01b.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:spf.salesforce.com include:amazonses.com include:send.employeenavigator.com ~all
  • 5itovdba411pmoe9um8dq1s3pl
  • 0ed1fe018a15960d9daf594c0ebf598948ac1fc3fd
  • google-site-verification=ka_K6UKMv_RqF3DdiloQPrVSR11NYW2a_3aQfuvDV2Y
Cloud / SaaS Services Detected
Amazon SES/WorkMail Salesforce