Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Flagship Bank

flagshipbank.com

Group Akira
Discovered 2025-05-27
Est. attack date 2025-05-06
Country US
City Ramsey

Description:

Flagship Bank was founded by a local Board of Directors, owned by committed local shareholders and operated by successful, local b ankers with deep roots in our community. We are going to upload about 40 GB of corporate data. A lot of cl ient information (DOB, SSN, passport number, address, DLs, phone and so on), detailed financial data, contracts and agreements, ce rtificates, etc.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • mx2-us1.ppe-hosted.com.
  • mx1-us1.ppe-hosted.com.
TXT Records
  • nordpass-domain-verification=e40c41adbbd11d80614d22fb9a8573f002f5271ede6f3c579bfb128011bac9b2
  • nordpass-domain-verification=a27a8ada586e4bacacf65351b956487e
  • v=spf1 include:spf.protection.outlook.com include:_spf.elasticemail.com exists:%{i}.spf.hc197966.iphmx.com a:monitor.ensenta.com include:spfhost.messageprovider.com ip4:47.206.255.52 ip4:24.73.202.34 ip4:54.236.190.114 ip4:54.236.189.64 ip4:54.236.189.61" " ip4:66.254.128.0/19 ip4:205.196.224.0/19 ip4:149.72.198.89 a:dispatch-us.ppe-hosted.com a:outbound-us1.ppe-hosted.com include:spf-us.emailsignatures365.com ~all
Cloud / SaaS Services Detected
Proofpoint Essentials