Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Welty Building Company

Group: alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2023-03-02

Description:

1.5TB including full clients info, confidential building drawings, engineering information "Build to Last" now public.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-2.mimecast.com.
  • us-smtp-inbound-1.mimecast.com.
TXT Records
  • djk6av0ouvbv857in24rueo599
  • knowbe4-site-verification=23ea27269763def1f324e7fcb8eb02cf
  • MS=F6678132A19E865AB5C18614180876F7F12D4FC1
  • v=spf1 include:_netblocks.mimecast.com include:us._netblocks.mimecast.com ~all
  • brevo-code:b7662fd6638a1143588c5bfbe37ca3ef
  • logmein-verification-code=kjLAJG8Tl3O51Hk4CrhjZrOUS
  • MS=ms27299911
  • apple-domain-verification=rXNGQeSTPrY1fOnL
  • vmbldfpes8n654d1ratrefv7nq
  • brevo-code:46a2dcbbb68ab7cd5d091dd7344206ae
  • f566u9pufso5qgvl9dpkqm4ih7
  • mmopnp3grpn7lictgfai1atsae
Cloud / SaaS Services Detected
Apple Microsoft 365 LogMeIn KnowBe4 Mimecast

Leak Screenshot:

Leak Screenshot