Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SERVICES INFORMATIQUES POUR PROFESSIONNELS(SIP)

Group: Blacksuit

Discovered by ransomware.live: 2024-04-07

Estimated attack date: 2024-04-07

Country: BE

Description:

Hello, everyone.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • sip-be.mail.protection.outlook.com.
TXT Records
  • bw=pO61mQkw5BiA8t2uijh+jQE94BUxT8MV9qsCuJpq1f+5
  • dashan-verification=775df811a2ae70b85cb9bed8663bc850518a2a09
  • have-i-been-pwned-verification=dweb_4ngyrpdze0u1fjbeewx8jhem
  • spycloud-domain-verification=0e9656c9-4334-4728-a963-b599a7d88a57
  • v=spf1 a:smtp.s-i-p.eu ip4:194.78.19.226 ip4:52.28.135.238 ip4:91.198.243.226 ip4:176.31.238.177 ip4:178.32.18.93 ip4:195.68.89.195 ip4:79.125.5.172 ip4:79.125.5.173 ip4:91.198.243.225 include:servers.mcsv.net include:spf.protection.outlook.com -all
  • MS=ms78849312
  • brevo-code:4431e12829c70f7cd76f0592eb69914f
Cloud / SaaS Services Detected
Microsoft 365 Have I Been Pwned

Leak Screenshot:

Leak Screenshot