Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hammondlumber.com

Group: lockbit3

Discovered by ransomware.live: 2023-03-29

Estimated attack date: 2023-03-29

Description:

Downloaded files > 230gb: Central 93gb, DownEast 67gb, EmpBackup01 24gb, HlcProfile2 15gb(Personal folders), Northern 12gb.Central, DownEast, Northern - city offices by direction, in cities Personal folders. Hammond Lumber Company was founded i...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • icann-abuse-reports tierra.net
  • domain sutherlandweston.com
  • domains sutherlandweston.com
MX Records
  • hammondlumber-com.mail.protection.outlook.com.
TXT Records
  • bw=ylMCvRdPuajXTTaNOQIHACfcna9ENSlJ18a4Yl5hpN9y
  • c5cv636cuoici97uu001vt7ad9
  • d99k84kevg47tjkkqcnm34lq31
  • dropbox-domain-verification=74mk9gle05a1
  • eafdtenqavo7j1347on7u12qmr
  • google-site-verification=7534wGRSnXpqvWjoYMiNOFhvxvuSlfxrV0U3zaIy3qc
  • google-site-verification=hut1PaljwY23elDaJRlm3-Ue_lQwta6zZh1-_jZe7_g
  • smartsheet-site-validation=1s4Kfp6v6D3M_MxjAQ0UojfwQd8qP_XT
  • v=spf1 ip4:66.231.194.34 ip4:50.170.171.146 include:spf.protection.outlook.com include:sendgrid.net include:spf.us.odmad.quest-on-demand.com mx:triadinet.com mx:triadinet.net a:mail.aaih.net ~all
  • apple-domain-verification=DPLxvEXTpa76eYCS
Cloud / SaaS Services Detected
Apple Box Dropbox SendGrid

Leak Screenshot:

Leak Screenshot