Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo cls-group.com

Group: lockbit3

Discovered by ransomware.live: 2023-07-06

Estimated attack date: 2023-07-06

Description:

CLS's innovative settlement, processing and data solutions reduce risk and deliver efficiency.clsgroup.org.uk/Administrator:thanks%455



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusecomplaints markmonitor.com
  • whoisrequest markmonitor.com
MX Records
  • scn004us.cls-services.com.
  • scn003us.cls-services.com.
  • scn003gb.cls-services.com.
  • scn004gb.cls-services.com.
TXT Records
  • Dynatrace-site-verification=f2610f28-27fe-40ee-b1a6-cab4effa97a7__u94gkoedtk1hl175a4nmhjgv2h
  • atlassian-domain-verification=hLY9Uo7FNIC40ZiNQCk1ltyaaAg8UYQdRRWFz6LueBgaWTtQXHvnZWyWRhQlkP8k
  • oWmuo9XSclyPXc5jTveA0f3DGUpDmaEeHouWm8BLA6TCwuG12uC5RDpbc9A9wU8
  • cisco-ci-domain-verification=462f9c1af50077de188ded00d421246b1e47eaacfcb74bf434cada62d87c8000
  • MS=ms90367405
  • v=spf1 ip4:213.52.134.216 ip4:38.65.13.165 ip4:85.90.229.10 ip4:85.90.229.11 ip4:38.65.4.169 ip4:38.65.4.170 ip4:38.65.13.167 ip4:213.52.135.130 include:_spf.porteighty.hosting a:secmail.ultipro.com a:mailhost.sapphire-cloud.net ~all
  • flexera-domain-verification-fjpgoqgyyshwtnnd
  • globalsign-domain-verification=9bfe2d78acc3ba0c58beec2fd0c5d5ef
  • globalsign-domain-verification=B105030FFA57E55A9138B3F0E3AFD6EB
  • google-site-verification=0szxpi0zbuiy-ywplo_hoi2pkjzrk_owvm7bv8
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Flexera Cisco

Leak Screenshot:

Leak Screenshot