Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Wexas

Group: play

Discovered by ransomware.live: 2023-09-28

Estimated attack date: 2023-09-28

Country: GB

Description:

United Kingdom



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • wexas-com.mail.protection.outlook.com.
TXT Records
  • ahrefs-site-verification_961ae2fcfdb9056fde8435e265500dc34cd365845659c9fe13e2a48a9d50b717
  • facebook-domain-verification=tmq73uhh6y56uzng5x0zuez8v07idx
  • google-site-verification=jIM1EcETnLssdCV-aH-pK_YH7Y57YAuEXwSrSMAJ4Ag
  • google-site-verification=r0qWUPk2JP00PVti9ee8p3XQENA2vJUBWp2EVjMdiUc
  • hes=05b4c63db0636bd9fc945a8dab034801
  • komtavhfpr71sk4j6oigtkc557
  • tmes=a22035c9c9054207286ebc5aa59340d8
  • v=spf1 ip4:85.119.102.183 ip4:13.95.23.39 include:amazonses.com ip4:85.119.103.122 ip4:85.119.103.116 ip4:80.252.121.204 include:spf.protection.outlook.com include:spf.exclaimer.net ~all
  • vekcac44c5qq1oqqgppta1kegc
  • 7pr673f0lpo7embdmm463vfc0u
  • 7sk5ednhlejv9297ajl488n3vg
  • MS=E3DB56D489427630906A5EE05E4AF875C4BB74C8
  • MS=ms54480093
  • PQtu+6Tb7wkaLJdYM2jto5ETUiFIHMxVK8Xfg4AWA9D+2dKyqRnKLTgD2WWZzvMiFceesyXGv0DrixJBh4CHtA==
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365

Leak Screenshot:

Leak Screenshot