Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo YCUA

Group: Alphv

Discovered by ransomware.live: 2023-07-26

Estimated attack date: 2022-05-12

Description:

The Ypsilanti Community Utilities Authority (YCUA) provides water and wastewater services to the Ypsilanti area. Water and/or wastewater services are provided to the City of Ypsilanti, Charter Township of Ypsilanti, Pittsfield Township, Augusta Township, Sumpter Township and Superior Township. YCUA contracts with the Western Townships Utilities Authority (WTUA) to provide wastewater treatment services for the Townships of Canton, Northville, and Plymouth.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • ycua-org.mail.protection.outlook.com.
TXT Records
  • v=DMARC1; p=quarantine; rua=mailto:syurgelevic@allcovered.com;
  • 24q6h5n4hs4stq9hainj2hl0g6
  • v=spf1 a:dispatch-us.ppe-hosted.com ~all
  • m2vgrkmnldp1d3dgqs6sesempi
  • pc01bipdo0obd42h0q8emft31m
  • MS=ms84655621
  • 4cuvfqefi8jjo1osrif7n6drld
  • google-site-verification=jFQGMmwMi4K6nk1M4TLFuqQv8_ikqNE6MNF7Xx6lV1k
  • tkqmcsavpeab9cjnjc7jpqrsl4
  • gM3D71IkV1ME8Bh/W7aaaW3quuJIQKNduw+ux42EgjSs4QcVJLApSj+NfCxJYa6uQexwCyVUj2Zi9Obv6ELSag==
  • shebmfdnrmt8em8e9l2v8aohn3
  • 9sd81vbcfio8iq9m7fimp5m9kh
  • srhanc1r8vtah2oa8c6k0smnr2
  • cdoevkbm0967rmlh9kj8o115pk
Cloud / SaaS Services Detected
Microsoft 365 Proofpoint Essentials

Leak Screenshot:

Leak Screenshot