Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Heffner Toyota & Lexus

Group: Nitrogen

Discovered by ransomware.live: 2025-09-12

Estimated attack date: 2025-09-12

Country: CA

Description:

Heffner is a family-owned Toyota and Lexus dealership offering a full range of services, including vehicle sales, maintenance, body repair, and detailing.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse domainpeople.com
  • wheffner heffner.ca
  • IT_Support heffner.ca
MX Records
  • heffner-ca.mail.protection.outlook.com.
TXT Records
  • google-site-verification=6QSy2FPRM6JR3MlDhPa_47mt_vmPx18c2S4U4NCXNHQ
  • google-site-verification=PigA2L4UOpjD8AXqWwfLHc_u8t_QeY5ZnM5f5ITo_Gc
  • google-site-verification=Ew-LaRw7FXEMe2t0hyTRF7f0ufJiuLHtNpkiLEj38Cc
  • v=spf1 include:universalSpf.org ~include:x.universalSpf.org include:_spf.smtp.com include:_spf.psm.knowbe4.com include:edealer.ca include:email-od.com include:spf.protection.outlook.com -all
  • mscid=htw+AS0+FfgvPpBfEdWD86F5ZOwCqo+1/MX4Ime4v4PIqxF88F7RuHsUZBzEvAm13/Qi02Eto262vJuk0zOmGg==
Cloud / SaaS Services Detected
KnowBe4

Leak Screenshot:

Leak Screenshot