Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo KLGATES.COM

Group: clop

Discovered by ransomware.live: 2023-06-29

Estimated attack date: 2023-06-29

Description:

Homepage - K&L Gates



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • mx0a-00358801.pphosted.com.
  • mx0b-00358801.pphosted.com.
TXT Records
  • webexdomainverification.4C675B8AA4F8B136E053AB06FC0A3F65=3c8cad34-36f7-4ceb-8fe4-6c37a5f9df8e
  • webexdomainverification.4C675B8BA9A2B136E053AB06FC0A3F65=4c7ce446-0d11-4d59-9c58-25ba04e19af5
  • smartsheet-site-validation=UqzGVRaiHZvZ_rnew-e9pp-VG_M2y3nv
  • onetrust-domain-verification=dae388afed374aa199a9a351f8d62059
  • B6azEJPp9uH7AcRa3fgf
  • mandrill_verify.WxPqoNgR1N6YLTZdRqxiDg
  • nearmap-domain-verification=6a5737e006733004dbc93167c156a1cdad8e5933cdfd85ad899ce7d815815912
  • ms-domain-verification=b92f117d-15bb-4e08-b2a8-1a00d8ee41ff
  • v=spf1 include:%{ir}.%{v}.%{d}.spf.has.pphosted.com -all
  • MS=ms28332931
  • ciscocidomainverification=1ca7c95d27c1873e9c9e0c405ba7b8bba735c07af269e00b17ac6b30538151c7
  • citrix.mobile.ads.otp=hr6m7f0xnhod9s5ifvl2
  • docusign=9f4b3f81-0dfe-4287-a9e7-4a02c7cee0b7
Cloud / SaaS Services Detected
Mailchimp Microsoft 365 OneTrust DocuSign Proofpoint Cisco Webex

Leak Screenshot:

Leak Screenshot