Handok Inc.
Group:
bianlian
Discovered by ransomware.live: 2023-06-01
Estimated attack date:
2023-06-01
Description:
An integrated pharmaceutical company providing drugs, medical devices, and in-vitro diagnostics instruments and devices.
DNS Records:
The following DNS records were found for the victim's domain.
- abuse inames.co.kr
- domainmaster handok.com
- handok-com.mail.protection.outlook.com.
- mscr.handok.com.
- hdpsmfs02.handok.com.
- smartsheet-site-validation=1K2sTxEbxKSxwKGcCEA2GKGHYRr9r80S
- Foxit-domain-verification=509f71f820979d8e618a60f93f7d17c6
- v=spf1 ip4:20.196.94.45 ip4:106.249.28.69 ip4:210.96.130.52 ip4:192.69.83.25 ip4:185.76.230.25 ip4:65.205.190.73 ip4:4.218.22.189 ip4:4.218.11.38 include:spf.protection.outlook.com include:mail.stibee.com include:_spf-dc50.sapsf.com -all
- cursor-domain-verification-vqpsep=IOoaclt0bh8GBHasKRYNVnKKm
- ms-domain-verification=feabaf72-5926-4705-a293-47d800382c79
- 3fTY1rBf7thv9fonoOztXBemtlLfXdnir6YBZZTel4J2ktb9pru88x93C5sRQJVCmMMxjsv+pJj9eFkRksPOPw==
- successfactors-site-verification=NTY1MzZlNjAyOGI0OWE5MGIyNWM2ZDFiNTliYWVlMTM4MTgyMTI3NmU3NjdjMjkzZmRjNjY0MjIyZDA3MGQ4MQ==
No well-known cloud or SaaS service detected.
Leak Screenshot: