Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo National Publisher Services LLC

Group: bianlian

Discovered by ransomware.live: 2024-05-26

Estimated attack date: 2024-05-26

Country: US

Description:

NPS Media Group provides a broad range of print and digital solutions to help media companies succeed in an ever more complex and challenging marketplace.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-complaints squarespace.com
MX Records
  • mx4.mtaroutes.com.
  • mx2.mtaroutes.com.
  • mx3.mtaroutes.com.
  • mx1.mtaroutes.com.
TXT Records
  • cisco-ci-domain-verification=598d2916bf2adcd285f33efe5ce234ebf9b465ded062c89dac97eddc88e060a1
  • WA1r7e//0lgfjL1i/IJY70ce9XtBZSf6VO1c9MfTEXnPPkff3WS3T15/B4qYgB1EBllyhPzwmXSsxFBsyQGzaQ==
  • v=spf1 ip4:67.20.112.78 ip4:64.207.97.74 ip4:216.251.255.100 ip4:216.251.255.101 ip4:216.251.255.102 a:nexpweb004.nextmark.com include:spf.mtaroutes.com include:spf.protection.outlook.com include:spf-us.emailsignatures365.com include:msgfocus.com include:" "spf.usaepay.com -all
  • MS=0ECF82D30A2EEB269DD3B3734F0D88C0EEF6456B
  • jucdp0v4bq4pd7ihabgnqgjopb
  • duo_sso_verification=9JVzotoaa0ZimQcheOnPhdycHt73K0N38HBtGKohqB8AcwTuvDYjEMflvXYGoV4k
Cloud / SaaS Services Detected
Cisco Cisco Duo

Leak Screenshot:

Leak Screenshot