Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Sasacom - Malaysian most unsecured retailer was hacked and leaked a huge amount of confide

Group: alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2023-04-21

Country: CN

Description:

Who is Sasa.com Zhengzhou Sasha Electronic Commerce Co. Ltd is a company that operates in the Retail industry. Headquarters: F Block B Mp Industrial Centre 18 Ka Yip St 8/, Chaiwan, Jiangsu, China Website: www.sasa.com.hk Revenue: $428.7M



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • compliance_abuse webnic.cc
MX Records
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • dkim.sendersrv.com.
TXT Records
  • google-site-verification=HUty5zRvkTRCiDaVYMAG8ezck9nmnuclQ2xyWVvB1vg
  • google-site-verification=udOWcvH-_oKo3pzzDJncGjuhO-rxr4_40ifhXd5aalo
  • v=spf1 include:mailgun.org ~all
  • v=spf1 include:sendersrv.com mx ip4:62.73.158.23 ip4:202.155.237.102/32 ip4:202.155.237.96/27 ip4:91.194.248.0/23 ip4:91.211.240.0/23 ip4:223.197.189.76/32 ip4:218.103.71.128/28 ip4:149.72.47.117/32 include:spf.protection.outlook.com include:sendgrid.net " "-all
  • google-site-verification=9d8sRGMDsBWeNCv24zfotr71Wm7qb83f-NtilLVWNK0
  • google-site-verification=G-WBfvwhD0kgN7aoBCwF7fYC9wXbUS4csN0ABstLXf8
Cloud / SaaS Services Detected
Mailgun SendGrid

Leak Screenshot:

Leak Screenshot