Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Econocom

Group: stormous

Discovered by ransomware.live: 2023-08-23

Estimated attack date: 2023-08-23

Description:

the group econocom First General Digital Company in Europe, the Econocom group designs, finances and facilitates the digital transformation of large companies and public organizations.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • legalservices eurodns.com
  • it-ssl247 econocom.com
MX Records
  • mx1.hc1541-46.eu.iphmx.com.
  • mx2.hc1541-46.eu.iphmx.com.
TXT Records
  • docusign=0257fbf2-8381-460c-b25d-3ae19762c44e
  • MS=ms38777933
  • MS=ms13812818
  • bw=cMfSl4RLERAibJu188MY2y0Y8cBEWMsm5u5wQHfdWNKC
  • d365mktkey=hf0H73d7p6cMsJPL8PNeTDSy5xLxpVk5qKVrKt6uY24x
  • apple-domain-verification=hOwwUw7WLSRWJTAq
  • v=spf1 ip4:194.165.192.55 ip4:80.124.9.4 ip4:194.165.193.71 ip4:194.165.192.54 ip4:194.165.193.70 ip4:5.158.202.210 exists:%{i}.spf.hc1541-46.eu.iphmx.com include:spf.mailjet.com include:_spf.google.com include:spf.myconnectwise.net include:145504811.spf0" "8.hubspotemail.net ~all
  • atlassian-domain-verification=0SxKAOfTrlLhw2FX3gLzJJ/0imZVJKKDmTP87oJ5FF0sqNX74/AKOdRKts87NBk2
  • atlassian-sending-domain-verification=458ec3c7-b535-42f4-a085-04923986f3c8
  • mwN3T6SULL5w7dCDfd2P5va8MQ5f7IIbyhIEtyeI5MR6wwyCRdso+nOsckfxP3sZ03dCSmamZWZ8ZHNYnnUo6Q==
  • docusign=0900347d-9ce9-4eb1-a18b-1d925ca82805
  • docusign=15b2411d-a153-4063-a653-b90af5a3f9fc
  • google-site-verification=PjElAfQq3CTvc4UO2syjbYZB3xvtiDKtt3XN1KYegn0
  • teamviewer-sso-verification=8f332352edc140f884fb5cf32a831625
  • jamf-site-verification=w_ahlPOWpBD2HH951C3ljQ
  • atlassian-domain-verification=3xTEjABjIhsB9zswtsqYGqFGtLHSmMAG17H0GW1X75Y5C6dWNMeRuTBpyDDVztlb
  • mission-impossible=d7aec71333114bd44da4267b872f21b9
  • g/8tquBDjC3YXkfHxFofTVzaACL/L8+OfJ7j244BVlo=
Cloud / SaaS Services Detected
Apple Atlassian HubSpot Microsoft 365 Teamviewer JamF Mailjet DocuSign

Leak Screenshot:

Leak Screenshot