Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

angstrom automotive group

angstrom-usa.com

Group Revil
Discovered 2021-09-09 23:46 UTC
Est. attack date 2021-09-09
Country US
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • angstromusa-com02b.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 ip4:67.69.38.43 ip4:76.190.99.76 ip4:12.147.153.226 ip4:201.174.42.90 ip4:201.90.251.238 ip4:201.174.7.170 ip4:12.174.137.2 ip4:198.13.81.226 ip4:45.27.188.225 ip4:50.148.125.114 ip4:50.148.125.115 ip4:50.148.125.116 ip4:185.55.15.4 ip4:98.101.52.1" "94 ip4:96.11.109.90 ip4:47.50.20.10 ip4:201.90.251.224/28 ip4:50.148.125.112/28 ip4:66.51.146.104/29 ip4:177.135.215.56/29 ip4:38.97.236.0/24 ip4:65.161.25.0/24 ip4:66.35.58.128/26 ip4:8.34.94.0/24 ip4:45.27.188.225/24 ip4:8.40.130.0/24 ip4:201.164.178.12" "0/29 ip4:201.174.20.160/30 ip4:99.209.22.227 include:spf.tmes.trendmicro.com include:spf.protection.outlook.com -all
  • MS=ms11716187
  • ZOOM_verify_fWoD02MMTqMDiQ5MBZY8HB
  • 0ed1fe018a513c43873e3849b0856a004109e61a65
Cloud / SaaS Services Detected
Microsoft 365 Zoom