Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SKF.com

Group: raznatovic

Discovered by ransomware.live: 2023-12-17

Estimated attack date: 2023-12-17

Description:

Maybe Next time you will learn paying a ransomw will cost you less :) Data is around 50gb, including user data and chat logs. Download



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse cscglobal.com
MX Records
  • skf-com.mail.protection.outlook.com.
  • skf-com.mail.protection.outlook.com.
  • skf-com.mail.protection.outlook.com.
TXT Records
  • flexera-domain-verification-geuwzvklswerlshu
  • facebook-domain-verification=6u0xy2nng07p6l8rfx13hkl4vll7ve
  • vmware-cloud-verification-374b9805-21a3-4bbf-b074-87a5b60d6d0a
  • docusign=bd60fc9e-aa4e-43b3-853e-67e26923a7db
  • google-site-verification=kgR8tfGeRLrmWzWy_LqmyCaMcnpQeRXu7AZIiWmmGWY
  • uber-domain-verification=b99e5594-4402-47f0-92c7-2a22ab94c2a6
  • infor-cloudsuite-domain-verification=JPLUXV2SDW5V6XFA57YM7L4PTYY3T5DEY32ZNETGRSUSHZ64LJSZ54ZVG39TQAGV
  • apple-domain-verification=tnC5wKsLJRF23VXi
  • docusign=fe900b11-0626-4cf0-afc7-ac50ebfe8157
  • t5mrm80ovoljpdtsatv7tdk12t
  • DomainVerification=OEOW5VKXN8XPFRAV8899BJD1TNH8E3X29XHE8PKE1P36AN258F6AN27IMDQAZSNM
  • v=DMARC1; p=none; rua=mailto:1b366b67d329107@rep.dmarcanalyzer.com; ruf=mailto:1b366b67d329107@for.dmarcanalyzer.com; fo=1;
  • miro-verification=68eec0d88e75209601f6240f2e74c96c57cddb72
  • teamviewer-sso-verification=e1c7d81fb7614d19960cbd9280f1e31f
  • google-site-verification=JbrkbFl-BuOAoxwkRqlyjZG11xyg2zLvMGji9558AE8
  • amazonses:zE4iwURHgPvLqIJNuS21kiO/8HrDEcTsD8MkoflmnfI=
  • v=spf1 include:spf.protection.outlook.com include:spf1.skf.com include:spf2.skf.com include:spf3.skf.com include:_spf.google.com include:4611544.spf07.hubspotemail.net ip4:217.77.192.9 ip4:217.77.193.9 -all
  • amazonses:ZQGmSn7pjHvvqHSxwDrJa4D0yoMlQoqRKLWQDPc/xTg=\013\010
  • mongodb-site-verification=IpeFNhKMYfPZoWagubug14fofWlBfdO4
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail HubSpot Miro Teamviewer Flexera DocuSign

Leak Screenshot:

Leak Screenshot