Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo MODTECH.CA

Group: Clop

Discovered by ransomware.live: 2026-01-25

Estimated attack date: 2026-01-25

Country: CA

Description:

[AI generated] N/A



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@webnames.ca
  • WNbc7147@webnamesprivacy.ca
MX Records
  • modtech-ca.mail.protection.outlook.com.
TXT Records
  • v=spf1 mx ip4:98.158.80.215 ip4:98.158.92.217 ip4:98.158.92.219 ip4:63.150.4.232 ip4:63.150.4.233 ip4:100.42.120.128/27 ip4:100.42.115.0/27 ip4:208.70.208.0/22 ip4:69.84.129.224/27 ip4:54.173.41.109/32 ip4:54.86.73.129/32 ip4:54.77.78.8/32 ip4:54.77." "200.220/32 ip4:54.66.220.193/32 ip4:54.66.200.109/32 include:spf.protection.outlook.com include:spf.myconnectwise.net include:spf.smtp2go.com include:spfa.cpmails.com ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot