Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SKF.com

Group: everest

Discovered by ransomware.live: 2023-09-02

Estimated attack date: 2023-09-02

Description:

SKF’s network was compromised(by collaboration with Ransomed group) a few days ago. The company continues to be silent about the problem.A representative of the company should contact us immediately and get full picture of what happened, instructions have all been sended in the emails.Otherwise, we will start communicating with your competitors. Revenue : $8.1 Billions […]



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • skf-com.mail.protection.outlook.com.
  • skf-com.mail.protection.outlook.com.
  • skf-com.mail.protection.outlook.com.
TXT Records
  • teamviewer-sso-verification=e1c7d81fb7614d19960cbd9280f1e31f
  • docusign=bd60fc9e-aa4e-43b3-853e-67e26923a7db
  • uber-domain-verification=b99e5594-4402-47f0-92c7-2a22ab94c2a6
  • v=spf1 include:spf.protection.outlook.com include:spf1.skf.com include:spf2.skf.com include:spf3.skf.com include:_spf.google.com include:4611544.spf07.hubspotemail.net ip4:217.77.192.9 ip4:217.77.193.9 -all
  • facebook-domain-verification=6u0xy2nng07p6l8rfx13hkl4vll7ve
  • vmware-cloud-verification-374b9805-21a3-4bbf-b074-87a5b60d6d0a
  • google-site-verification=kgR8tfGeRLrmWzWy_LqmyCaMcnpQeRXu7AZIiWmmGWY
  • apple-domain-verification=tnC5wKsLJRF23VXi
  • v=DMARC1; p=none; rua=mailto:1b366b67d329107@rep.dmarcanalyzer.com; ruf=mailto:1b366b67d329107@for.dmarcanalyzer.com; fo=1;
  • miro-verification=68eec0d88e75209601f6240f2e74c96c57cddb72
  • amazonses:zE4iwURHgPvLqIJNuS21kiO/8HrDEcTsD8MkoflmnfI=
  • t5mrm80ovoljpdtsatv7tdk12t
  • DomainVerification=OEOW5VKXN8XPFRAV8899BJD1TNH8E3X29XHE8PKE1P36AN258F6AN27IMDQAZSNM
  • mongodb-site-verification=IpeFNhKMYfPZoWagubug14fofWlBfdO4
  • docusign=fe900b11-0626-4cf0-afc7-ac50ebfe8157
  • flexera-domain-verification-geuwzvklswerlshu
  • infor-cloudsuite-domain-verification=JPLUXV2SDW5V6XFA57YM7L4PTYY3T5DEY32ZNETGRSUSHZ64LJSZ54ZVG39TQAGV
  • amazonses:ZQGmSn7pjHvvqHSxwDrJa4D0yoMlQoqRKLWQDPc/xTg=\013\010
  • google-site-verification=JbrkbFl-BuOAoxwkRqlyjZG11xyg2zLvMGji9558AE8
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail HubSpot Miro Teamviewer Flexera DocuSign

Leak Screenshot:

Leak Screenshot