Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Mainstream Engineering

Group: Royal

Discovered by ransomware.live: 2023-04-18

Estimated attack date: 2023-03-09



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • mxa-009b1601.gslb.gpphosted.com.
  • mxb-009b1601.gslb.gpphosted.com.
TXT Records
  • ac6746cdeab147ccaf02aa704ca011eb
  • apple-domain-verification=pYiLd12i1i7syCfF
  • MS=ADEA305BC64C6162AA387A936B18B8448A4B2C68
  • v=spf1 ip4:199.250.207.203 ip4:74.117.144.82 ip4:97.68.128.98 ip4:97.68.128.99 include:spf-009b1601.gpphosted.com include:servers.mcsv.net -all
  • MS=ms33079864
Cloud / SaaS Services Detected
Apple Microsoft 365 Proofpoint

Leak Screenshot:

Leak Screenshot