Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Marwood

Group: Play

Discovered by ransomware.live: 2026-02-19

Estimated attack date: 2025-09-22

Description:

United States



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • d407304.b.ess.ca.barracudanetworks.com.
  • d407304.a.ess.ca.barracudanetworks.com.
TXT Records
  • v=spf1 ip4:98.143.242.34 ip4:173.162.235.126 include:spf.protection.outlook.com include:spf.smtp2go.com include:spf.ess.ca.barracudanetworks.com -all
  • MS=46FDCAA2FB0BE7D699F9EA9F6C2C75B453D731E2
  • bcn=9C8AEF64-8AF5-11EE-BDF6-C86CB93C31BD
  • MS=ms82853526
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot