Group:
Bianlian
Discovered by ransomware.live: 2023-09-21
Estimated attack date:
2023-09-21
Country:
Description:
PT Smartfren Telecom Tbk, together with its subsidiaries, provides telecommunication services in Indonesia. The company develops, builds, owns, operates, leases, and maintains facilities and network to operate telecommunications network and services.
DNS Records:
The following DNS records were found for the victim's domain.
- mail4.smartfren.com.
- mail2.smartfren.com.
- mail1.smartfren.com.
- mail3.smartfren.com.
- globalsign-domain-verification=6069E073A08D088FF399BDD782E3E0F8
- safebreach-domain-verification=f88aeb19-fc23-4f52-90f4-f9480d346b63
- dqgjl0khyzjwwk1svtbvkm4kmdpgw0lm
- v=spf1 a:smartfren.com ip4:202.70.52.47 ip4:103.78.145.100 ip4:207.82.122.162 ip4:45.76.153.203 ip4:128.199.101.160 ip4:202.70.52.110 ip4:202.70.52.12 ip4:202.70.51.76 ip4:202.70.53.122" " ip4:202.70.52.16 ip4:202.70.53.175 ip4:202.70.53.176 ip4:202.70.53.177 ip4:202.70.53.178 ip4:202.70.52.151 ip4:202.70.52.49 ip4:202.70.52.44 mx:smartfren.com" " include:spf.protection.outlook.com -all
- google-site-verification=MRzJ5GzPZoOW2Gw6_3L--ibgRsfpm2G6sj4xXelu4zw
- google-site-verification=zUD2YY4v5giANxjs9JfghEDZx7Mpt0XIK_wO9Ly-MRc
- google-site-verification=xVQvk-VlVDKWADiPh9MeqXCvX_MXlGDOPI3UOyuDe9A
- yahoo-verification-key=znhjGuNQFWbS3IBxZmxeWqonXb8VOQX8AaoM84FQPCs=
- google-site-verification=ZqSJYZ-6u1YNf6NqVjzTzrEUMcW0_woGpUN22U6MIfQ
- google-site-verification=xZhkX95xCq45qUkh1JNyDICXHlx4Wmev90i3f7xbJek
- google-site-verification=TfA6GABnKAOVgIMcRPM-O3vsSk0bIn6frCJusGHECtE
- MS=ms16338197
- google-gws-recovery-domain-verification=51456825
- mYCqB2dKMbDPy+7/CCcZ94DEp91xqJq/2ZAcIqouHaaBd4vRBb/WVopWVDwthd7u/QqFIq9tBLwM3IJRnUBzgg==
- PT Smartfren Tbk
- MS=ms92253530
- google-gws-recovery-domain-verification=53353982
- facebook-domain-verification=i4ovzn8llqny6djjtya20m2q77xjih
Cloud / SaaS Services Detected
Microsoft 365
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.