Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo IndicaOnline

Group: everest

Discovered by ransomware.live: 2024-11-19

Estimated attack date: 2024-11-19

Country: US

Description:

Client’s Personal data and ID’s Total personal records : 422,075 https://indicaonline.com Company representative should follow the instructions to contact us before time runs out


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 32

Third Party Employee Credentials: 0


External Attack Surface: 48



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • aspmx.l.google.com.
TXT Records
  • twilio-domain-verification=a9531dc02a863d0ca0b8c8a61e476a44
  • v=spf1 include:aspmx.pardot.com include:mailgun.org ~all
  • apple-domain-verification=QuUbkrUmIqN061Zw
  • atlassian-sending-domain-verification=f42b1f02-92b8-4547-a1b5-843efb737b43
  • include:apple-domain-verification=QuUbkrUmIqN061Zw
  • include:mxsmtp.sendpulse.com +a +mx ~all\
  • pardot925453=a51d8e57cc7077ce29f97981df1304726ba6d05dec2c557d259afeb83f0efb67
  • slack-domain-verification=dA8J1fCeZoILSF2ghMfOcoxvExqNwZsHdl5GLGkw
Cloud / SaaS Services Detected
Apple Salesforce Slack Twilio Mailgun

Leak Screenshot:

Leak Screenshot