Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Play
Discovered 2024-07-11 22:40 UTC
Est. attack date 2024-06-29
Country US

Description:

United States

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 86046e7841f712b324c4056ca043d85eceb30baa4630122244433b5026fa89bdhyperice.com.whoisproxy.org
  • 86046e7841f712b324c4056ca043d85e0a24856331c26ef0e0148432bb9d8776hyperice.com.whoisproxy.org
  • 86046e7841f712b324c4056ca043d85e845131e921ab3b0ae52806e908b451f0hyperice.com.whoisproxy.org
  • 86046e7841f712b324c4056ca043d85ede2e31423689ac5b083062df158d3a5dhyperice.com.whoisproxy.org
  • trustandsafetysupport.aws.com
MX Records
  • d292668b.ess.barracudanetworks.com. Barracuda
  • d292668a.ess.barracudanetworks.com. Barracuda
TXT Records
  • v=spf1 include:amazonses.com include:servers.mcsv.net include:spf.ess.barracudanetworks.com include:mail.zendesk.com include:spf.protection.outlook.com include:sendgrid.net ip4:216.23.183.114 ip4:54.240.48.112 ip4:52.206.145.59 ~all
  • 0ed1fe018a811b4520b73f41159ca763ecee173637
  • MS=ms71957011
  • apple-domain-verification=rWOMFEd89ZxaI5RS
  • atlassian-domain-verification=e10QlRbOj/zzfJxjTuY3atxPoaX8Js/kbxRYhdkl/rmlVKCUWzrPOkZlLiEqgY5V
  • duo_sso_verification=w68vKbVUnlDPkQA16Kbxhox7AaLWjMsRZJ3BLbU3yHcrgRFmJwAXMzMfLaNukWsq
  • google-site-verification=_tshE3xrDTcJXFA2G0OOF_NWQT77j0TzijgAUo8osvU
  • google-site-verification=ahM7TBTR0btuv86vurTzPR-jCta_KQJw3KnrDhi9bs0
  • google-site-verification=kSa1N8jjOeYdSdmee2O5MJvT_Z60frwtJlvQNuIeyUg
  • google-site-verification=v67r4SggHfNeFfpFcUoEgmF6OmrLNTtmTVQYO_oR3JI
  • klaviyo-site-verification=VCBd8U
Cloud / SaaS Services Detected
Amazon SES/WorkMail Apple Atlassian Cisco Duo Mailchimp Microsoft 365 SendGrid Zendesk

Leak Screenshot:

Leak Screenshot