Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ricardo

Group: play

Discovered by ransomware.live: 2023-11-02

Estimated attack date: 2023-11-02

Country: GB

Description:

United Kingdom



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • ricardo-com.mail.protection.outlook.com.
TXT Records
  • MS=ms54656098
  • google-site-verification=L1Hc7-06ig-bPreJ1qG74PDnWDS9vuhGzabLHTk9nDQ
  • d365mktkey=bis20sx8ilazrwj2z234cfg2
  • d365mktkey=6exp14dwm1fcp7lo2z8z3potb
  • atlassian-domain-verification=USUDSy26Erc6lnL5dBYsuG5KxK32AcPI/Iu0RUynPH/thHige+/IDKh54lqXrnoB
  • twilio-domain-verification=35fc6c55a9f0dc3c46095ba8882018f1
  • 7D7E-B220-58E6-B006-47CD-B309-24A1-4D67
  • 5p7eohdu8psjd833im7rg33uj3
  • v=spf1 include:spf.protection.outlook.com include:spf.autopilothq.com a:mail-az-us.vivantio.com a:smtp.ricardo-aea.com a:mail.ricardo.com include:_spf.atlassian.net include:spf.flowmailer.net include:_netblocks.icims.com ip4:134.213.195.176 ip4:208.75.120" ".0/22 ip4:51.144.133.247 ~all
  • d365mktkey=3lcii61U878F44V95bi6x16nnmeo7fSuZYwrHAIMpwUx
  • se633r1en7lqqrkprta22l0lfr
  • atlassian-domain-verification=nw5pBkM9gjfPJ9rXkDXnAr+cyz8noF7hhI0RPVwrAPYwM3Cf6ijAaQ24M1RhxNg0
  • mongodb-site-verification=XFXMwLyS12GAYVeXphfHnh1Hdb02JKjB
  • mentimeter-fdc8b415-e238-4b80-af0a-04d5e879bbcd
  • openai-domain-verification=dv-7dvuPtHyzdcykZ1aBhTSRqBM
  • atlassian-domain-verification=L7ue1OTGVtfsZR2X0DNb7Z8Syc3TKq8NqgeygNDOdvYWn6iddqyo2R465qaPM4k1
  • _pbmywi0cul6xvys6pfgu4znlc4udlrx
  • 3R6MFRNCC0RDPUUWWD02PODANA7Y6F6R0UJWOHXQ
  • d365mktkey=ldn73npGSMklO2xQhAxYoCxn0vQAAEYWWEMlqLCV09Ix
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Twilio

Leak Screenshot:

Leak Screenshot