Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo KVFCU.ORG

Group: cloak

Discovered by ransomware.live: 2023-08-24

Estimated attack date: 2023-08-24

Country: US

Description:

Country: USA



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx2-us1.ppe-hosted.com.
  • mx1-us1.ppe-hosted.com.
TXT Records
  • v=spf1 a:dispatch-us.ppe-hosted.com include:spf.protection.outlook.com include:spf.usa.net include:spf.accesssoftek.com include:spf.messagelabs.com include:spf.dynect.net include:_spf.mailgun.org IP4:173.239.115.34/32 IP4:65.182.202.34/32 -all
  • ppe-23426e701224766335fa8fc96031adb477b134cd
  • S0Y1N24351
  • MS=ms63149147
  • ppe-ad76c7f950816dde6ea2fec67c8dd3210cb1960e
Cloud / SaaS Services Detected
Microsoft 365 Mailgun Proofpoint Essentials

Leak Screenshot:

Leak Screenshot