Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Ruhrpumpen

Group: Royal

Discovered by ransomware.live: 2023-01-12

Estimated attack date: 2023-01-12

Description:

PROOF PACK - Passports \ Finance \ Internal documents



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d200346b.ess.barracudanetworks.com.
  • d200346a.ess.barracudanetworks.com.
TXT Records
  • v=spf1 include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com ip4:64.207.247.132/32 ip4:212.23.129.211/32 ip4:64.207.247.138/32 -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.