Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

emkay#####

emkay.com

Group Clop
Discovered 2024-12-24 23:05 UTC
Est. attack date 2024-12-24
Country US
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Presumed victim name: Emkay Inc. - Cl0p announcement. We have data of many companies who use cleo. Our teams are reaching and calling your company and provide your special secret chat.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • us-smtp-inbound-1.mimecast.com. Mimecast
  • us-smtp-inbound-2.mimecast.com. Mimecast
TXT Records
  • v=spf1 ip4:209.251.82.64/27 ip4:50.79.207.128/28 ip4:198.41.84.224/27 ip4:204.68.232.128/26 include:us._netblocks.mimecast.com include:_spf.salesforce.com include:spf.constantcontact.com ~all
Cloud / SaaS Services Detected
Salesforce Mimecast

Leak Screenshot:

Leak Screenshot