Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Pueblo Mechanical & Controls

Group: nokoyawa

Discovered by ransomware.live: 2023-05-23

Estimated attack date: 2023-04-03

Description:

Pueblo Mechanical & Controls is a leading provider of commercial HVAC and plumbing repair, replacement, and retrofit services across the Sun Belt and Rocky Mountain regions of the US. Founded in 2001, the company primarily focuses on servicing customers in commercial, industrial, education...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • usb-smtp-inbound-1.mimecast.com.
  • usb-smtp-inbound-2.mimecast.com.
TXT Records
  • dmlld3BvaW50X2F6dXJlX2NvbW1vbg==
  • v=spf1 include:usb._netblocks.mimecast.com include:_spf.salesforce.com include:_spf.psm.knowbe4.com include:spf.constantcontact.com ~all
  • logmein-verification-code=bb5d6c4b-1548-438e-9dd8-0b5ca9140c40
  • UH0O1+hBOBJ3UAd+eAQgFOzxLYDb0+/XcLdmsbn5yVKq82vbiVNtqbDhUdosLFsMr8/D2yer1lSXU81+fhgu4Q==
  • apple-domain-verification=nn4g2nDKGKawZkfa
  • 0ed1fe018a20b7e2e136264180b55bb34a2b9837c0
  • v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCW43b7aQL45GeADHUMP6HN7KkdaySPIRdF9RhAK6p4hNMRzMkdXujLXIxk25GLTVe/8mXaCKUUV76/krld/s1t6jr5ej7am8Ehd/ZiTsfdfM++BBRcE2aIgLH8TfqHfIpvz5Y9tUKDuAZn437qL/U6sWxLgWDzwmB2XZJ7a+WU+QIDAQAB
  • docusign=728b9d05-4a8d-4b1f-a1a6-f3b6c05570f4
  • adobe-idp-site-verification=bef4fbe6b9d459ccbe14104966ad3f1ebc435f33af696bfdfecdb273bdcbefe4
  • MS=ms40254403
  • google-site-verification=BMfrN8mQSkZzX-ShHm4gxFrwVNlZi-T0g-O01YlxFe8
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Salesforce LogMeIn KnowBe4 Mimecast DocuSign

Leak Screenshot:

Leak Screenshot