Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo MacEwen Petroleum

Group: lynx

Discovered by ransomware.live: 2024-08-26

Estimated attack date: 2024-08-16

Country: CA

Description:

Headquartered in Ontario, Canada, MacEwen Petroleum Inc. is a Canadian owned and...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
  • it macewen.ca
MX Records
  • gw138.fortimail.com.
  • macewen-ca.mail.protection.outlook.com.
TXT Records
  • v=spf1 ip4:207.236.175.210 ip4:142.112.105.195 ip4:208.82.168.9 ip4:208.82.170.9 ip4:208.82.171.9 ip4:208.82.169.9 ip4:52.233.17.137 ip4:72.138.184.10 ip4:142.112.75.154 ip4:69.165.220.61 ip4:69.165.220.76 ip4:142.112.75.153 ip4:173.243.135.138 ip4:198.37" ".153.74 ip4:205.204.80.231 ip4:206.152.14.54 ip4:208.117.48.85 ip4:142.127.88.14 ip4:54.39.207.241 include:_spf.kubra.com include:smtp-out.ivalua.us include:spf.protection.outlook.com include:_fds.destwin.com ~all
  • MS=5701EDA511CBB57C91CCA2C8471F035D484530F8
  • EnZqsWpAFsg6kG2q9m9ZWd
  • 050a15ba0f615b18002f8cbbf0c2e8
  • logmein-verification-code=914b7489-095e-4fb9-ae97-e2bc2a8b6a7c
Cloud / SaaS Services Detected
LogMeIn

Leak Screenshot:

Leak Screenshot