Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Phoenix/Packaging Inc

Group: Alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2022-04-27

Description:

Phoenix/Packaging is a custom manufacturer, as well as a distributor.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • us-smtp-inbound-2.mimecast.com.
  • us-smtp-inbound-1.mimecast.com.
TXT Records
  • ZOOM_verify_eqsqjXZ0SgBKusEzsR3NF6
  • v=spf1 a mx ip4:67.225.240.24 ip4:12.47.172.3 ip4:12.47.172.42 ip4:54.240.124.234 ip4:54.240.124.235 ip6:2607:fad0:3905:2080::1 ip6:2607:fad0:3905:2080::6 " "include:kryptronic.com include:spf.protection.outlook.com a:smtp1.blueuc.net include:sendgrid.net include:us._netblocks.mimecast.com ~all
  • 0ed1fe018aad64cd0004fc44038dcad229d791f1c3
Cloud / SaaS Services Detected
SendGrid Mimecast Zoom

Leak Screenshot:

Leak Screenshot