Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SmartLynx Airlines SIA

Group: hunters

Discovered by ransomware.live: 2024-12-23

Estimated attack date: 2024-10-31

Country: LV

Description:

Country : Latvia - Exfiltraded data : yes - Encrypted data : no


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 3

Third Party Employee Credentials: 0


External Attack Surface: 2



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain-abuse internetx.com
MX Records
  • prefilter.emailsecurity.trendmicro.eu.
TXT Records
  • docusign=cdb7bcc9-e5d8-4ccd-9a64-06356f59576c
  • atlassian-domain-verification=pDEKpgI0cMSEEKWy3mlMRZrnkrMIKWItil1BkalXLohH4nnBSrTczmiKPcxSRKJy
  • sophos-domain-verification=5e42aaeaba6a3843ea72ff2d0a243d99aeb1f8a297968eddb973d741dc4f7200
  • apple-domain-verification=bcQoR4GZOmDRknxL
  • google-site-verification=4-x9MTw8NK_AIu5uVstifxyyK6NXP1zNmjwqQDOBsbM
  • v=spf1 include:smart-lynx.com include:spf.mailjet.com include:_spf.mlsend.com -all
  • tmes=a7b977b51880c143abc4dd388135beec
Cloud / SaaS Services Detected
Apple Atlassian Mailjet DocuSign Sophos

Leak Screenshot:

Leak Screenshot