Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Welcomehallmission.com

Group: everest

Discovered by ransomware.live: 2025-01-13

Estimated attack date: 2025-01-13

Country: CA

Description:

2 TB of internal data are free to downloadLink:http://bifpwatchoxp7tsb2kpes37b23ogjrb2kj4wgr7yncf4hhgsfahu7jad.onion/welcomehall/



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse rebel.com
MX Records
  • barracuda1.opsia.com.
  • barracuda.opsia.com.
TXT Records
  • MS=ms65772248
  • v=spf1 ip4:38.102.96.0/24 ip4:38.108.74.128/26 ip4:70.35.220.128/25 include:sparkpostmail.com ~all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot