Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Moneris Solutions

Group: medusa

Discovered by ransomware.live: 2023-11-13

Estimated attack date: 2023-11-13

Country: CA

Description:

Established in 2000 and headquartered in Toronto, Ontario, Canada, Moneris Solutions is a provider of payment processing solutions. The company offers credit, debit, wireless, and online payment services for merchants and offers electronic loyalty and stored-value.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • moneris-com.mail.protection.outlook.com.
TXT Records
  • Dynatrace-site-verification=7b6e98e1-1c0a-4706-a3bf-21556a90b8bb__lr1itbq161q81aj3ana06lhj5k
  • apple-domain-verification=KxENup750bzQ4aLr
  • teamviewer-sso-verification=7bdfca69a6c04cd7b48b5ee478c05a68
  • pardot_17792=e3fe4c9a75bb72d9edc9bb35612ebdb4581395d840b7d817686976de413e2180
  • MS=ms43923087
  • adobe-idp-site-verification=34a15f34-8a82-47e8-951e-c47e05f75a67
  • msfpkey=b8tu5cr2wsli6ih3salegh51
  • atlassian-domain-verification=nVms/bBNTiJL82dEcD6lAqst4gn/Zk8o4ltaJPBTIqyT2sUedfiUmgWXpQXBjY6x
  • logmein-verification-code=YKlAxEjsrKw3IIOJsDjisC1cs
  • jamf-site-verification=XSf2xq7iG_q5I_yC0dElZA
  • google-site-verification=cgFeN6xX6E9v3ahQUIYHpkwCOjrdmMeXA932OHenVe4
  • atlassian-sending-domain-verification=f0ef2df7-e721-47e6-8489-82c09896347f
  • YyCQUBcWZ4yCsyN9FDL8oM7aIBg5B2E302aRb0bieUGNntEYMLFJgVh+Xw8iesaB+4GHadnjwoyC4lS4r1pbuQ==
  • cisco-ci-domain-verification=71ae95337c9bd55241a54f676859fb82daf0e23a949ff9d3bcf7d5fdb6bc62ce
  • dtm-domain-verification=qfvc9_njqtvtRMmotGpnk8gKGgJFtvJW0l8uNziferY
  • VISA=3B03758CFF72134310FB6913C6B69953
  • MS=ms67372769
  • MS=1D05110BB239D060AD061D4E376850E9B6450F94
  • apple-domain-verification=aGUJ7oLgcAhKOgX5
  • v=spf1 mx a:moneris.com ip4:54.240.80.54/32 ip4:69.46.115.0/25 ip4:216.220.38.0/24 ip4:142.245.29.128/27 ip4:142.245.61.128/27 ip4:142.245.231.0/24 ip4:74.200.8.128/25 ip4:216.226.44.248/32 ip4:216.226.44.249/32 ip4:216.226.44.250/32" " ip4:23.249.192.248/32 ip4:23.249.200.248/32 ip4:23.249.203.0/24 ip4:23.249.195.0/24 ip4:216.71.135.41/32 ip4:216.71.131.45/32" " include:et._spf.pardot.com include:_spfblock.salesforce.com include:_spfblock1.salesforce.com include:spf.protection.outlook.com include:_spf.qp-mail.ca -all
  • MS=ms22465322
  • google-site-verification=nUPpXBHfirXKo5ZytqASQUoMPr0FRyaZCZwAIOaLjCA
  • google-site-verification=U6ZZ30uWaSfIFz6VdwfkHMkraR0wxYA5pqsL6v6N090
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 LogMeIn Teamviewer JamF Cisco

Leak Screenshot:

Leak Screenshot