Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group: Blacksuit

Discovered by ransomware.live: 2024-07-25

Estimated attack date: 2024-07-25

Description:

Despite repeated warnings, Pojoaque management has decided to ignore us, showing that they do not care about the data of their employees and partners. They have been repeatedly warned of the consequences of publishing the data. Remember, these are the people who don't care about anything but their own wallets.


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • d247195a.ess.barracudanetworks.com.
  • d247195b.ess.barracudanetworks.com.
TXT Records
  • google-site-verification=rGNFjxHzjzR9B56vsL_zKJcTmzh5up37FLQP5-8pngc
  • MS=ms19570189
  • 8dvmnp78vegua7nrth47cj7ufj
  • v=spf1 a mx ip4:199.229.236.190 include:spf.protection.outlook.com include:_spf.paubox.com include:spf.ess.barracudanetworks.com -all
  • v=verifydomain MS=8166764
  • apple-domain-verification=Argfe0jVhnCONf2r
  • ZOOM_verify_qO6vVzR9h8oNy9L7OYMs1t
Cloud / SaaS Services Detected
Apple Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot