Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ROCHESTER.EDU

Group: clop

Discovered by ransomware.live: 2023-07-14

Estimated attack date: 2023-07-14

Country: US

Description:

University of Rochester



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • ppmx8.its.rochester.edu.
  • ppmx1.its.rochester.edu.
  • ppmx2.its.rochester.edu.
  • ppmx3.its.rochester.edu.
  • ppmx4.its.rochester.edu.
  • ppmx5.its.rochester.edu.
  • ppmx6.its.rochester.edu.
  • ppmx7.its.rochester.edu.
TXT Records
  • canva-site-verification=qsSID_a7_mmERenifH8oHg
  • MS=ms89335153
  • amazonses:t0h51N4KcnLsmv0GCxTldTulccNcoipzJc6eAi5plW4=
  • BI33PP2GQL56UKH5AR4O9MCN36
  • SFMC-t2dm_vrUidQ2icKpiVcl48icr4KiGits1SNoo3vf
  • apple-domain-verification=jMTUzYx2TaYoVoZu
  • smartsheet-site-validation=rcyF_qkX9gbG19E-200lJDSNEfI4NhLn
  • smartsheet-site-validation=QkMve04pGZHYZe1miacfthXdrq9t2kSA
  • google-site-verification=N3432SBzvUMr21bWQ--r3Jm6F9Xr-6V3HlyjZMV0VlI
  • ZOOM_verify_tVjaxJBzyzpZ3yJx7bi29I
  • wiz-domain-verification=6230f0d481f85f809ec811cd3d965cdf324f8c2307fccd796aa1eb5bbb1c0a68
  • google-site-verification=8djAyNsFylbBii26ILup3c3y0EDSgj7xKR7JP86_6F8
  • v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot