Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Medusa
Discovered 2024-05-21
Est. attack date 2024-05-20
Country GB
City Dorking

Description:

Heras (founded in 1952) is an end-to-end supplier of permanent and mobile perimeterprotection solutions. They design, manufacture, install and service temporary and permanent perimeter protection solutions for customers across business, community and industry sectors. Heras UK corporate office is located in Apex Building 1 Water Vole Way, Doncaster, South Yorkshire, DN4 5JP, United Kingdom and has 6 employees. The total amount of data leakage is 393.14 GB

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@support.gandi.net
  • faadc452c56bf16603d9215c246e8f67-56387470@contact.gandi.net
MX Records
  • heras-com.mail.protection.outlook.com.
TXT Records
  • MS=ms80082557
  • Am0jHNWDghcSDiPcKRhtzHy2rWUD6pJMZv5ImsMBOoeItYa2mO+eRB8nmDpGUKPle90VxWJqN8k+2l2/H2sjuA==
  • d365mktkey=w4HIkvvcWxYPmSJPdqB9UxJJoEPxF89XFNQr3njcHJUx
  • d365mktkey=57qP9Jn9kYZuufP5p8SwQS66Q4d7otUxbZygpInSTGEx
  • msfpkey=194wmi37ym00f57n1hi5qajc9
  • MS=ms30411791
  • apple-domain-verification=catfWTcWcWN3MCpr
  • atlassian-domain-verification=qlk8g6K3m7OpCvLZ37vlHb9hFVT3r6O6grA5kVyNEXjwGbriyKqRvSBRC8qyqA1q
  • asv_domain=a019a45b9168f5ae6908cbdeb81d4af6
  • atlassian-sending-domain-verification=6c96f414-569b-46ac-8848-c0241193a3da
  • v=spf1 include:spf.protection.outlook.com ip4:185.132.183.168 ip4:185.183.30.218 ip4:62.60.119.134 ip4:62.60.119.198 ip4:62.60.119.141 ip4:51.145.237.209 include:herasspf.heras.com ~all
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365

Leak Screenshot:

Leak Screenshot