Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo cleshar.co.uk

Group: cactus

Discovered by ransomware.live: 2024-03-11

Estimated attack date: 2024-02-19

Country: GB

Description:

Download link #1: https://***************.onion/CCS/PROOFMirror: https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/CCS/PROOFDATA DESCRIPTIONS: Accounting\treasury\taxes 40GB+, HR - payrolls\personal documents\dossiers 110GB+, Customer data - projects\contracts\drawings 130GB+, Engineering\R&D\QA, Legal documents 3GB+, corporate correspondence 120GB+, employees' personal folders, database exports\backups... Thousands of financial documents, employees background reports including Personal Identifying information, contracts and tenders, executive directors personal and corporate data, engineering database exports and much more.PRICE: $1MFILE TREE PRICE: $10K 



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • eu-smtp-inbound-2.mimecast.com.
  • eu-smtp-inbound-1.mimecast.com.
TXT Records
  • MS=ms33886099
  • v=spf1 include:_netblocks.mimecast.com ~all
  • 24p6obno0322q4kdupljde714b
  • xA6RmUC+E6WxB5NvEnL8/TbSI9soarFoyHmsf+XGV8KKf4dTLrGq1RMVs3pLPSl7OAHTKdeMbHTn3BeLcwTY4A==
  • dk8f3w7qss3js0918c4p0krp4n4swmn7
  • qbd989xqz198fgr2vt7xhwtr3dlzzklg
Cloud / SaaS Services Detected
Microsoft 365 Mimecast

Leak Screenshot:

Leak Screenshot