Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Universal Pure

Group: play

Discovered by ransomware.live: 2024-08-29

Estimated attack date: 2024-08-19

Country: US

Description:

United States



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • us-smtp-inbound-2.mimecast.com.
  • us-smtp-inbound-1.mimecast.com.
TXT Records
  • sv0n30mvrgn6qmf6eoqfmkteia
  • 0ed1fe018a4416552f9672481eb1df01947eb4b721
  • dispatch-us.ppe-hosted.com a:dispatch-us1.ppe-hosted.com
  • 0ed1fe018a37713e0aeca24eefabfd07cb90f46506
  • MS=ms16400789
  • pardot481501=51725c5715916aad94972f15da95df9d12b1b310f49b49d48c7dbe626a40715f
  • v=spf1 include:us._netblocks.mimecast.com ip4:104.218.182.6 ip4:172.19.44.10 ip4:172.19.44.11 ip4:18.232.1.16/28 ip4:208.65.145.246 ip4:216.12.149.100 ip4:52.200.60.192/26 ip4:52.39.168.158 ip4:52.39.169.28 ip4:52.73.255.192/26 ip4:64.201.134.50 ip4:65.98" ".153.122 ip4:65.98.153.130 ip4:69.40.160.122 ip4:76.79.47.66 include:spf.protection.outlook.com include:sent-via.netsuite.com include:aspmx.pardot.com include:auth.msgapp.com ~all
Cloud / SaaS Services Detected
Microsoft 365 Salesforce Mimecast Proofpoint Essentials

Leak Screenshot:

Leak Screenshot