Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo chubb-bulleid.co.uk

Group: cactus

Discovered by ransomware.live: 2024-07-30

Estimated attack date: 2024-06-19

Country: GB

Description:

Download link #1:  https://***************.onion/CBS/PROOF/Mirror: https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/CBS/PROOF/DATA DESCRIPTIONS: Personal identifiable information, customer confidential information, litigation documents, corporate confidential data, NDA, contracts, employees and executives personal files, financial documents\statements, corporate correspondence, etc.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • eu-smtp-inbound-2.mimecast.com.
  • eu-smtp-inbound-1.mimecast.com.
TXT Records
  • _globalsign-domain-verification=2FBaU72JtT0wYBBYT9are7oHuC3XCSCOuJvC0CMxhb
  • google-site-verification=eh16tN5F-2TE7f7Q6Td35t0AIZzlSI71VVznb6qKdL8
  • v=spf1 include:_netblocks.mimecast.com include:spf.protection.outlook.com include:spfa.cpmails.com -all
Cloud / SaaS Services Detected
Mimecast

Leak Screenshot:

Leak Screenshot