Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo One Source Associates

Group: Play

Discovered by ransomware.live: 2025-11-20

Estimated attack date: 2025-11-20

Country: US

Description:

United States



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • onesa-com.mail.protection.outlook.com.
TXT Records
  • google-site-verification=YLUn87uFxg2N9GeD85ccuqWj0ab5Kdme3v6T6owoM0U
  • 5TaQpBkSSWbYsnBGiykXfUJDuUxK6vXtMrBe0gt2TA17SLzw4XGKar+rXQIoQTQFqo4NpAgEoOgMm5LT2z5GLw==
  • v=spf1 include:zeptomail.net include:spf.protection.outlook.com include:spf.emailsignatures365.com ip4:50.211.155.178 ip4:108.31.135.67 include:spf.constantcontact.com include:_spf.salesforce.com include:spf.mailjet.com -all
  • MS=ms95860448
  • Foxit-domain-verification=ff75c1aa7241d2eb5a826f8218805ca7
Cloud / SaaS Services Detected
Microsoft 365 Salesforce Mailjet

Leak Screenshot:

Leak Screenshot