Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo William S. Hein & Co.

Group: incransom

Discovered by ransomware.live: 2024-05-21

Estimated attack date: 2024-04-17

Country: US

Description:

William S. Hein & Co., Inc. is a leading, family-run publishing company that has been serving the worldwide library community since the 1920s. Originally a renowned publisher of legal publications, the company has since expanded its services into academic, public, government, and corporate libraries, becoming a highly respected multidisciplinary publisher in multiple sectors. In the course of a successful cyber attack on this company, we have a large amount of confidential information at our disposal. More than 500GB. All financial documents, mail correspondence, agreements and contracts that are not subject to disclosure, personal data of employees. All this and much more will be published in case we do not come to an agreement.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • d305715a.ess.barracudanetworks.com.
  • d305715b.ess.barracudanetworks.com.
TXT Records
  • v=spf1 a mx a:wshein.com ip4:173.225.61.254 ip4:23.95.103.110 ip4:192.3.137.190 include:servers.mcsv.net include:spf.registeredsite.com include:spf.protection.outlook.com ~all
  • google-site-verification=vElH6VQyrhb51V9jiCdD8Lq4KUJCUtsSY1vDHO8bEyM
  • google-site-verification=hLpUvvYyJnmxppoEiGwxNVlPjQa2Ozn9B8c5BFEQY7s
  • MS=ms79855139
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot