Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo TELOS.COM

Group: clop

Discovered by ransomware.live: 2023-06-19

Estimated attack date: 2023-06-19

Description:

Telos Corporation - Solutions that Empower and Protect the Enterprise



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafety support.aws.com
  • 37dd118d-d026-4743-8b5b-d4691245487e identity-protect.org
MX Records
  • mxb-00060b01.gslb.pphosted.com.
  • mxa-00060b01.gslb.pphosted.com.
TXT Records
  • google-site-verification=5YVXUlabUfVlbFc2tixX1lR2-9Pt3-oE3yaAnAKV-Fw
  • have-i-been-pwned-verification=dweb_xi7buc3z8jrkkt1lfkkgp7b1
  • sending_domain311471=a28eff6383cea5a77e84e395f05be2dc23e830ae9447a9288466d180ee513f91
  • slack-domain-verification=5ZYrc5LlapxUTIXePdJ5zn3kV0rPJS7b1vmbCctq
  • v=spf1 mx a ip4:18.252.149.110 ip4:15.200.201.90 ip4:198.252.228.15 ip4:198.252.228.220 ip4:198.252.228.233 include:spf-00060b01.pphosted.com include:aspmx.pardot.com include:_spf.salesforce.com ~all
  • 66z65tqtxzvnqlnzcjyt7nspcmnssp1d
  • 97cb9gvvdkdpdkxmv8r3q3hc0svzq1c1
  • apple-domain-verification=dROAL0IpFrn3vJk4
  • atlassian-domain-verification=JS4hX68BckZBCdbae76Pyyy3WXGhvnJkHhhffM1ODWpUiYS0ZrkVk8zj4g9QS0u5
  • docusign=44f11633-d24f-4a36-8010-a3e1cea0ff7a
  • docusign=8dac9cfb-c00e-4ba7-95ce-5f6d3ccca9b9
  • duo_sso_verification=gMGEmMLpCpOlqY9lBCPU9R21Enz2xqWOtMgAoLKTqCsHRnUtfxeX2MBkRurPJfRn
Cloud / SaaS Services Detected
Apple Atlassian Salesforce Slack Cisco Duo DocuSign Have I Been Pwned Proofpoint

Leak Screenshot:

Leak Screenshot