Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ocasa

Group: akira

Discovered by ransomware.live: 2024-06-27

Estimated attack date: 2024-06-26

Description:

OCASA is an international provider of logistic solutions to compa nies in the e-commerce, general logistics, and health sectors. Yo u will be able to download their files soon. There is a lot of pe rsonal and financial data, operational data of international bran ches, clients data, detailed payment information and so on.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • ALT4.ASPMX.L.GOOGLE.com.
  • ALT2.ASPMX.L.GOOGLE.com.
  • ASPMX.L.GOOGLE.com.
  • ALT3.ASPMX.L.GOOGLE.com.
  • ALT1.ASPMX.L.GOOGLE.com.
TXT Records
  • v=spf1 ip4:200.51.85.8/29 ip4:200.51.85.14/32 ip4:181.111.180.170/29 ip4:200.41.237.162/29 ip4:200.41.177.64/29 include:amazonses.com include:_spf.google.com include:_spf.checkmail.com -all
  • brevo-code:17ff5dc96cab2fbf08645da847ea7b7b
  • ibkcg2pqj1aqbsg4c2tlvgrfef
Cloud / SaaS Services Detected
Amazon SES/WorkMail