Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Handok Inc.

Group: bianlian

Discovered by ransomware.live: 2023-06-01

Estimated attack date: 2023-06-01

Description:

An integrated pharmaceutical company providing drugs, medical devices, and in-vitro diagnostics instruments and devices.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse inames.co.kr
  • domainmaster handok.com
MX Records
  • handok-com.mail.protection.outlook.com.
  • mscr.handok.com.
  • hdpsmfs02.handok.com.
TXT Records
  • smartsheet-site-validation=1K2sTxEbxKSxwKGcCEA2GKGHYRr9r80S
  • Foxit-domain-verification=509f71f820979d8e618a60f93f7d17c6
  • v=spf1 ip4:20.196.94.45 ip4:106.249.28.69 ip4:210.96.130.52 ip4:192.69.83.25 ip4:185.76.230.25 ip4:65.205.190.73 ip4:4.218.22.189 ip4:4.218.11.38 include:spf.protection.outlook.com include:mail.stibee.com include:_spf-dc50.sapsf.com -all
  • cursor-domain-verification-vqpsep=IOoaclt0bh8GBHasKRYNVnKKm
  • ms-domain-verification=feabaf72-5926-4705-a293-47d800382c79
  • 3fTY1rBf7thv9fonoOztXBemtlLfXdnir6YBZZTel4J2ktb9pru88x93C5sRQJVCmMMxjsv+pJj9eFkRksPOPw==
  • successfactors-site-verification=NTY1MzZlNjAyOGI0OWE5MGIyNWM2ZDFiNTliYWVlMTM4MTgyMTI3NmU3NjdjMjkzZmRjNjY0MjIyZDA3MGQ4MQ==
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot