Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SAFHOLLAND

Group: alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2023-04-13

Description:

SAF-HOLLAND is one of the world's largest manufacturers of high-quality axles, suspension systems, fifth wheel couplings, landing legs and kingpins. SAF-HOLLAND products are known for their superior quality, reliability, long service life and cost efficiency.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mxa-001e1301.gslb.pphosted.com.
  • mxb-001e1301.gslb.pphosted.com.
TXT Records
  • google-site-verification=5zuRaEZgf3xw3SxeofxAK4DuEE7-4-JFsT4SGws8D_Y
  • v=spf1 ip4:62.153.64.26 ip4:62.153.64.28 ip4:63.160.93.60 ip4:63.160.93.116 include:_spf.senders.dc.aeb.com include:mailing.eqs.com include:successfactors.eu include:spf.sendinblue.com include:spf.protection.outlook.com include:_spf-dc33.sapsf.eu include:" "_spf.salesforce.com ~all
  • apple-domain-verification=SjzlNFjY5HEoPlOD
  • kx8jjt6396ry87t71nmpbln80kq31fxw
  • bvbgqfjjl4km6rr6fwz7ltzxnx3n2rfg
  • 2zgg33z7wckwv0swkntpcccmgxy21q72
  • MS=ms17402167
  • atlassian-domain-verification=UQbcF6vmB5BwRAi/jSRhXRAOj/RXEECwLUOvbZD1VmhPCcMldVnEeYN0w9YchjaI
  • cisco-ci-domain-verification=25552342bfb39f1e027b53f111d427af5a859f78074bb03ed36a7ca8880872a8
  • fvx9dbnvzyktwnyhztslxn0tmpxnksb3
  • v9tyqkvrx9s9zp3yclmpy7665sn0nkhf
  • fFLPxKJgLFlLeR5DsD/8ykgfUIY7fPLXv44M3RoobaWUIygrja6w8VaI/6ZIgmS+/a8fWXb0GHyx6UMBKXKTiA==
  • DAB-UF3-ENE
  • _wze6hk5qyjnoiqdghawmxhfrdxnb8a1
  • _o3v30wglvjvrbai4fhsgaynxub6kw59
  • google-site-verification=p4xKlc7MfZ4BkN6RuElgl6yzhAvwMNIE0KZK8nhCweE
  • _aqgf3tci2rgjqobt82ud45nporw753b
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Cisco Sendinblue

Leak Screenshot:

Leak Screenshot