Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Regional Transportation Authority

Group: monti

Discovered by ransomware.live: 2023-03-08

Estimated attack date: 2023-03-07

Description:

A government agency created by the State of Illinois to coordinate the Chicago region’s transit system https://rtachicago.org



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • rtachicago-org.mail.protection.outlook.com.
TXT Records
  • cisco-ci-domain-verification=4e02041a5ad70851130774f26d93bbd25a64353f06af3f1be250178652158434
  • ZOOM_verify_7R-5NUmQSTCpPaZLaxkILw
  • twilio-domain-verification=ff660ff5957695823147d486fbf3634e
  • 01FA69B9FE727D6DDACAE62F9FFFF1015DE2DAE5D3C699EECEF524E99056AB3B
  • n4utfl5i0lpqhn4aj8og12hk25
  • google-site-verification=flc9M5aNMzUEqdyhYI2RWUswVmrm9y2XedmQechjGlc
  • apple-domain-verification=Qf6oksbCbIzhHc9V
  • the3ge0391ki9e18khv0kjn5dq
  • parpj40fsco56cgiotpkqh2adk
  • egmuu9f8rg9rm9s18ptqdml7tf
  • 7l9jtvqc6nv44nsky38pz9hsgkgjk13k
  • 2tfh6vcb81vf2hk32xtypjg6sjtjbj1j
  • MS=ms54225503
  • google-site-verification=9x7_hdasQdGLQ8QNbJYuip-Fk0EPUR4fT_L8qDgPoS4
  • hmO/GmqybyQGELYTrInplw/XpOV69rlROSOcbRqv5PkktFwXV/apo75Twmeav7UR/5T9w3JIqjyOffPIt/RIog==
  • adobe-idp-site-verification=6dceb34d4f2c839ebb465c72ea8770c099f49a4a60f98a36fb7b84930883262c
  • v=spf1 include:spf.protection.outlook.com a:mail.rtachicago.com a:mail.rtachicago.org ~all
  • ida747e6hssdqj7d22e9t2mm79
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Twilio Cisco Zoom

Leak Screenshot:

Leak Screenshot