Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo agy.com

Group: blackbasta

Discovered by ransomware.live: 2023-12-13

Estimated attack date: 2023-11-03

Country: US

Description:

AGY is a world leader in high performance materials used in a range of markets including Electronics, Thermoplastics, Industrial, Aerospace, Recreation / Consumer and Defense with a focus on making our customers’ products lighter, faster and stronger. High performance materials in the form of glass fiber yarns and reinforcements provide our customers with six vital enhanced properties: strength, impact resistance, stiffness, temperature resistance, fatigue resistance and radar transparency. With a product portfolio developed for extreme performance utilizing a set of unique manufacturing platforms AGY provides tailored materials solutions to end-use customers for the most demanding applications worldwide.SITE: www.agy.com Address : 2556 Wagener Road Aiken, South Carolina, USA 29801ALL DATA SIZE: 403gb 1. Human Resources 2. Finance 3. Engineering 4. Science & Technology 5. Departmental data 6. Home users data files 7. Drawings 8. Incident reports and etc.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • d80372b.ess.barracudanetworks.com.
  • d80372a.ess.barracudanetworks.com.
TXT Records
  • je7r0sig8tteottc2iu8nnjqca
  • 3ej8go5odmcj9nn70kil26jlcn
  • apple-domain-verification=h7wTePaqRScLcObX
  • u96chpsqhcghlapiehmnp7t41j
  • eUOpVafWWuvT6XGK5SwRyij4Mz1gLO
  • v=spf1 a mx ip4:10.10.10.25/32 ip4:10.10.10.26/32 ip4:12.34.207.97/27 include:amazonses.com -all
  • cisco-ci-domain-verification=78c310324e6fbfea19e390ffa9b50a96324d4946df89a195c7b6e16b994438e2
  • MS=ms47810961
  • duo_sso_verification=SV6NHGUxeudlYkkWlrIvfloh8v7kFdZ2kTWQyMjk8zcm2I9L5AzTZdh4inTZXxdG
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail Microsoft 365 Cisco Cisco Duo

Leak Screenshot:

Leak Screenshot