Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Indoarsip

Group: Trigona

Discovered by ransomware.live: 2024-03-16

Estimated attack date: 2024-03-16

Country: ID

Description:

Indoarsip is a leading provider of archival solutions, dedicated to preserving and managing critical documents and records for organizations across Indonesia. With a strong presence in the archiving industry, Indoarsip offers comprehensive services and innovative technologies to meet the diverse needs of its clients.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 28

Third Party Employee Credentials: 6


External Attack Surface: 6



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • on-smtp12.taffeta.co.id.
  • on-smtp13.taffeta.co.id.
  • on-smtp14.taffeta.co.id.
  • on-smtp11.taffeta.co.id.
TXT Records
  • v=spf1 ip4:103.229.73.61 ip4:103.229.73.100 mx a:mail.indoarsip.co.id ip4:198.154.112.98/32 ip4:198.154.112.99/32 ip4:198.154.112.57/32 ip4:198.154.112.61/32 ip4:198.154.112.64/32 ip4:198.154.112.65/32 ip4:198.154.112.74/32 ip4:198.154.112.78/32 ip4:198.1" "54.112.80/32 ip4:198.154.112.84/32 ip4:198.154.112.87/32 ip4:115.124.73.21/32 ip4:115.124.73.19/32 ip4:45.35.14.0/24 +include:_tfs-relay.taffeta.co.id +include:_premium-tfs-relay.taffeta.co.id include:_transaksi.surel.io ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot