Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Soroc

Group: Play

Discovered by ransomware.live: 2023-05-29

Estimated attack date: 2023-05-29

Country: CA

Description:

Canada



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namespro.ca
  • 1bd-920cb2cc namesproprivacy.ca
MX Records
  • soroc-com.mail.protection.outlook.com.
TXT Records
  • ms-domain-verification=ded3fbbb-2bff-4545-be33-011f3c2c1d7e
  • nordpass-domain-verification=c8501958b2485ccb0bc2c39e8e2f526d97c3e133e3e0631a73cc21b5c4a0b4f4
  • 185fad99562af1b5._domainkey=v=DKIM1; k=rsa; h=sha256; s=email; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAt5CXM4Okyq4iYYYeD5sydI+Pbderf44z86epv/qY0lDX6yK3EdX7NZD5Xvn3rSARfFJcjn1eXPuLktewC5ONKRObnqMsCwUOU5UlWR979/" "uuGV4EYw9wIY6JndJHaZeevNPc9dLu7CzClfjYt3X2qoVkd1sfoBsNxq5FjF9v6Qpt9X+tYxYD+AglfOpZ1IWyA/RNvHIfyL2POo1Ud7z11PtsPlMpctODRfUMT1vNQ64Kb/roYFYZFT6RD7zDBAH0R8XUj2rFvgF5DuDGx8U3BEdYMXrR2nXwxCxxwqBfI/UEiizdd2umoX21NuYI0NqGlx5fGhRe1Q7SeoEYwoWZcQIDAQAB
  • google-site-verification=r5YgSArg0FmYj3m2SRG1Fop5tuXQRQDSO5_H7AjzpnQ
  • v=spf1 include:_s01039529.autospf.email -all
  • atlassian-domain-verification=amoeggD4og2PfXrQa/0oP4PjD2czoIgGkjyvpYCjU7RakwCJnUGjO4pjxg4Q9i0U
  • vcvsnd7jlc27k6tviacep5k10m
  • ms-domain-verification=1eb3e12d-4612-46cc-b693-fdad8f6b7b7e
  • a66dbf1d-2978-4e9b-b8ea-b0ada7b0fa6f
  • 8a5jt6fn97fu2t354j8a6ug1fe
  • docusign=a529852b-e3c5-4adc-a0a1-e04526be24ba
  • apple-domain-verification=fIUKNEPpS30ws3d5
Cloud / SaaS Services Detected
Apple Atlassian DocuSign

Leak Screenshot:

Leak Screenshot