Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo getcloudapp.com

Group: Lockbit3

Discovered by ransomware.live: 2024-05-06

Estimated attack date: 2024-05-06

Country: US

Description:

CloudApp is a cross-platform screen capture and screen recording desktop client that supports online storage and sharing. CloudApp full and partial screen recordings export to.mp4 format. Full or partial screen image captures export to either JPG or...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1738

Third Party Employee Credentials: 0


External Attack Surface: 100



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@moniker.com
  • info@domain-contact.org
  • abusereport@moniker.com
MX Records
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • aspmx.l.google.com.
TXT Records
  • status-page-domain-verification=q1mbcfp18440
  • v=spf1 a mx include:customeriomail.com include:mailgun.org include:mail.zendesk.com ~all
  • MS=83762F192D650D294887E2A4B025D9FBE38289E2
  • amazonses:5RSfZ/2L/TwApCLwF8BFecxNu1aW0fgN2KBStz4VpxU=
  • google-site-verification=5xuXU4Sp00Fd1wmaTqIjLDWH92-89MlEB2_ye-3yOAQ
  • google-site-verification=Frk-VlRphYM2PSMy1hwqWIuBhsq3L7zuqlahe5t6Iqg
  • google-site-verification=GlNd96fFG4P_hxxlNPk_FRJD74b5V_qrWUXr0qCYFrE
  • google-site-verification=HP7BGrXeKh8rpX8EKmgGKRTjFIw5WVxhtVdFIY75Vac
  • google-site-verification=gEHAXXDwfheOl8YBWv0T-LfI-a8XLtt3TzL1kkifraA
  • google-site-verification=qbG0qe2qlih_5gdxhmNr4Va2yPUUjTCTBDFU3m4k1_o
Cloud / SaaS Services Detected
Amazon SES/WorkMail Zendesk Mailgun

Leak Screenshot:

Leak Screenshot