Madia
Group:
fog
Discovered by ransomware.live: 2025-02-04
Estimated attack date:
2025-02-03
Country:
Description:
Extract from Gitlabs: Bolin Centre for Climate Research, X-lab group, Madia
DNS Records:
The following DNS records were found for the victim's domain.
- alt1.aspmx.l.google.com.
- aspmx2.googlemail.com.
- alt2.aspmx.l.google.com.
- aspmx.l.google.com.
- aspmx3.googlemail.com.
- google-site-verification=uXwLOEARXi4Ou7GA3u5tK8RJiybyveg8RqGCIfmTErQ
- atlassian-domain-verification=pnLoJb6F27vpIjo9N8FG1LGhmocpPxYXTv7vbCRH0u/a865AydCp/FAAcVVkyN5T
- atlassian-domain-verification=7tjhLvBUNhUR4DWCwpaYfXXo5+gYAfVcdLd4nAQVfgAKaRFtUfkhF4gzj1NHxj-n
- v=spf1 a mx ip4:85.9.213.107 ip6:2a04:3544:1000:1510:3cc8:64ff:fefa:844 ip4:136.144.185.16 ip4:94.130.71.30 ip6:2a01:4f8:10b:34a1::2 ip4:37.97.154.59 ip6:2a01:7c8:aabf:449::1 ip4:136.144.170.189 ip4:168.119.43.90 ip6:2a01:4f8:e0:180e::2 ip4:94.130.71.30 i" "p6:2a01:4f8:10b:34a1::2 ip4:94.237.42.17 ip6:2a04:3544:1000:1510:3cc8:64ff:fefa:4afe ip4:94.237.108.105 include:_spf.google.com include:spf.hacotest.hypernode.io include:_spf.mijnwefact.nl ~all
Leak Screenshot: