Group:
Blackbasta
Discovered by ransomware.live: 2023-11-16
Estimated attack date:
2023-10-31
Country:
Description:
[DK] CITY CONTAINER Moderne og miljørigtige logistik- og affaldsløsninger. Med mere end 35 års erfaring er City Container A/S i dag en af landets førende og mest velkonsoliderede virksomheder inden for indsamling og transport af affald for kontor, industri, bygge- og anlægsbranchen, samt store kommunale affaldsløsninger (MSW). City Container har hovedsæde i Farum med afdelinger i Favrskov, Hørsholm, Greve, Gentofte, Kalundborg, Lejre, Odense og Kolding. I City Container er vi ca. 500 ansatte, som dagligt arbejder for at skabe de smarteste og mest miljøvenlige affaldsløsninger for private, virksomheder og kommuner. City Container råder over en samlet vognpark på ca. 180 biler, bestående af komprimatorbiler, der servicerer kommuner med husholdningsaffald (MSW), lastbiler til opgaver for industrikunder og container og kranbiler primært til byggeriet.SITE: www.citycontainer.dk Address : 62 Farum Gydevej, Farum, Capital Region, 3520, DenmarkALL DATA SIZE: 502gb 1. Human Resources 2. Finance 3. Home folder (Personal files employees)
DNS Records:
The following DNS records were found for the victim's domain.
- citycontainer-dk.mail.protection.outlook.com.
- v=spf1 include:spf.itafdelingen.net include:o._spf.hostedsepo.dk include:spf.protection.outlook.com ip4:178.209.169.116 ip4:178.209.172.72 ip4:185.150.75.22 ip4:77.66.88.254 ip4:77.66.88.129 ip4:178.209.165.51 ip4:178.209.165.55 -all
- _globalsign-domain-verification=GxUFQtAw5xCJhA9ncquCAplEmY9THG-9QHKozrKs2I
- globalsign-domain-verification=BAF8D6E638AA005C547C9E7EA7EDFFA9
- google-site-verification=0sojwwidpKLOEX-xmuYH3XtOIcp9-yKwBP_n1SG8nR0
- IkiAIqpPLWiyJwRnub0WQcCEntuE5nYwygmGo6D6OjNQS278q8n/c2Qxl8SAHyB1IiSTHx8aLEzqv+AlBZOhZQ==
- apple-domain-verification=ZRzxfRj1yk0oUZnk
- atlassian-domain-verification=OeX7LSwycXz3wqGsM8sgCdsiGgaSNkfgthPShOC21H/i1dcKF9TIeVQgBaqk0wvf
Cloud / SaaS Services Detected
Apple
Atlassian
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.