Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ontellus

Group: blackbyte

Discovered by ransomware.live: 2023-08-24

Estimated attack date: 2023-08-24

Description:

Established in 1975, and rebranded in 2017 Ontellus provides internet-based record retrieving and billing services. Their headquarters are located in Houston, Texas



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • ontellus-com.mail.protection.outlook.com.
TXT Records
  • apple-domain-verification=YsbXIRX4bV8Y5DM3
  • atlassian-domain-verification=6Qiz6CYyCBuXc63IMhwb1lIeroo17iTJUbVoy53vSQJCBSp1Ax9M3sXzMEQBd91p
  • v=spf1 ip4:23.251.206.252 ip4:3.19.183.48 ip4:3.143.145.99 ip4:18.188.229.156 ip4:52.171.69.175 ip4:20.88.206.211 include:3070728.spf07.hubspotemail.net include:spf.protection.outlook.com include:_spf.salesforce.com -all
  • pendo-domain-verification=241c267e-5f98-48ab-9dc4-f96c6be7c809
Cloud / SaaS Services Detected
Apple Atlassian HubSpot Salesforce