Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Royal Dirkzwager

Group: play

Discovered by ransomware.live: 2023-03-13

Estimated attack date: 2023-03-13

Country: NL

Description:

Netherlands



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • dirkzwager-com.mail.protection.outlook.com.
TXT Records
  • docusign=4162f9fb-c8e2-487c-ba08-0e899a804e92
  • google-site-verification=i0x1SpPkz4gK1n4iLTwCD8GUk78_5_otAlloUFYgUiY
  • ms-domain-verification=a061f01e-e002-4ddf-9359-8d0da16cae18
  • v=spf1 a mx ip4:51.144.79.116 include:spf.protection.outlook.com include:_spf.transip.email include:aspmx.pardot.com -all
  • BXhEzKl9vhq6fKMIoyH1H3Pcv9/awBr9WzeT2FMTbJI0+fDWT5DY1rMpN9SeLz/E/0v10RHITBfUxfp7cSODWg==
  • sending_domain1023541=e68a4f821b9a917c4a19f8f33f2df5b85a784932cb4c42c9f9b3704b5feb32d2
  • pardot1023541=e1e5062134051f14dde7d869aa3c3c51cd18c6cbc0e0aada101e284645d09d18
Cloud / SaaS Services Detected
Salesforce DocuSign

Leak Screenshot:

Leak Screenshot