Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group: Play

Discovered by ransomware.live: 2026-04-04

Estimated attack date: 2026-04-04

Country: US

Description:

United States


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • d43843b.ess.barracudanetworks.com.
  • d43843a.ess.barracudanetworks.com.
TXT Records
  • google-site-verification=KhLLaYloSnO4o1zIyEIzNlyaeHc2sruT0Y0rfoO1hw8
  • google-site-verification=iP9vBhYuiR6aJiuDoKZSMVj-fzBDyL0Kqhm69W7mVBs
  • google-site-verification=o2zEtKTVD8P89HmkBtR0J521g-ylfnn5W8HNCcj8zGo
  • v=spf1 mx ip4:209.222.82.238 ip4:52.204.57.21 ip4:162.221.95.189 ip4:209.222.82.247 ip4:108.179.33.242 ip4:108.179.33.243 ip4:43.228.184.0/22 ip4:103.2.140.0/22 ip4:116.90.248.0/22 ip4:202.5.192.0/20 ip4:203.5.192.0/20 ip4:64.235.144.0/20 ip4:209.222.82.0" "/24 ip4:205.201.128.0/20 ip4:198.2.128.0/18 ip4:148.105.0.0/16 ip4:198.21.0.0/16 include:spf.protection.outlook.com include:amazonses.com ~all
  • apple-domain-verification=MG0sgV3Q2996XNi1
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail

Leak Screenshot:

Leak Screenshot