Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo esprigas.com

Group: lockbit3

Discovered by ransomware.live: 2023-08-29

Estimated attack date: 2023-08-29

Description:

EspriGas is a technology driven beverage, medical, and industrial gas company. It brings a modern approach to the gas industry by utilizing a network business model to deliver products nationally


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 7

Third Party Employee Credentials: 0


External Attack Surface: 4



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-complaints squarespace.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • qv81go2pmbg5k6lfqi9bcm8v6m
  • pardot915891=4145d74d45c236838546fbb343ebe005d3c81e8498e8d4296dab9c4b2819cd3e
  • unlo8oq8e3ntim2pj34mm46gr
  • ca3-4b5185fe583b4540a2faf632a1e065c7
  • sophos-domain-verification=2e7717b31dbf5aef00513d527246c74da4fe2973b4d6b96e41e1f4af103d2074
  • 2fp52s7rgf0n9m4fus41bfeqd4
  • kbvphlibe6vtupihaoae79ac4d
  • n9pur7jstm765tmne02g61locg
  • v=spf1 include:_spf.salesforce.com include:us._netblocks.mimecast.com include:emsd1.com mx include:aspmx.pardot.com ~all
  • logmein-verification-code=0b7d4c86-d7e1-4094-b25b-dc0acd1f1821
  • pardot915891=79b58339b4fa68f9e8b9a5ead1c23c57e6d2f75cc758b0989889b30b55f426db
  • google-site-verification=gwZyB7foi_AVgvKnDoTMieq7gzmAzAkAMqRJ7m85IHE
  • pardot915891=cdb897f3ec124d995b79277abb2fbe37aed1308a04be8348c5e8ea871400b72a
Cloud / SaaS Services Detected
Salesforce LogMeIn Mimecast Sophos

Leak Screenshot:

Leak Screenshot