Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Pueblo Mechanical & Controls

Group: Nokoyawa

Discovered by ransomware.live: 2023-05-23

Estimated attack date: 2023-04-03

Description:

Pueblo Mechanical & Controls is a leading provider of commercial HVAC and plumbing repair, replacement, and retrofit services across the Sun Belt and Rocky Mountain regions of the US. Founded in 2001, the company primarily focuses on servicing customers in commercial, industrial, education...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • usb-smtp-inbound-2.mimecast.com.
  • usb-smtp-inbound-1.mimecast.com.
TXT Records
  • v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCW43b7aQL45GeADHUMP6HN7KkdaySPIRdF9RhAK6p4hNMRzMkdXujLXIxk25GLTVe/8mXaCKUUV76/krld/s1t6jr5ej7am8Ehd/ZiTsfdfM++BBRcE2aIgLH8TfqHfIpvz5Y9tUKDuAZn437qL/U6sWxLgWDzwmB2XZJ7a+WU+QIDAQAB
  • docusign=728b9d05-4a8d-4b1f-a1a6-f3b6c05570f4
  • adobe-idp-site-verification=bef4fbe6b9d459ccbe14104966ad3f1ebc435f33af696bfdfecdb273bdcbefe4
  • MS=ms40254403
  • google-site-verification=BMfrN8mQSkZzX-ShHm4gxFrwVNlZi-T0g-O01YlxFe8
  • dmlld3BvaW50X2F6dXJlX2NvbW1vbg==
  • v=spf1 include:usb._netblocks.mimecast.com include:_spf.salesforce.com include:_spf.psm.knowbe4.com include:spf.constantcontact.com ~all
  • logmein-verification-code=bb5d6c4b-1548-438e-9dd8-0b5ca9140c40
  • UH0O1+hBOBJ3UAd+eAQgFOzxLYDb0+/XcLdmsbn5yVKq82vbiVNtqbDhUdosLFsMr8/D2yer1lSXU81+fhgu4Q==
  • apple-domain-verification=nn4g2nDKGKawZkfa
  • 0ed1fe018a20b7e2e136264180b55bb34a2b9837c0
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Salesforce LogMeIn KnowBe4 Mimecast DocuSign

Leak Screenshot:

Leak Screenshot