Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo hindlegroup.com

Group: cactus

Discovered by ransomware.live: 2024-09-25

Estimated attack date: 2024-09-10

Country: GB

Description:

<p>Industrial Machinery &amp; Equipment<br><br>“Hindle Group based in Bradford, West Yorkshire on a 22,000 sq.m site comprises of 2 divisions involved with gears &amp; gearbox manufacture, engine component remanufacture/manufacture and distributors for engine parts.”<br><br>Website: <a href="https://www.hindlegroup.com/">https://www.hindlegroup.com/</a><br><br>Revenue : $30.6M<br><br>Address: Caledonia St, Bradford, West Yorkshire, BD5 0EL, United Kingdom<br><br>Phone Number: +44 1274727234<br><br><mark class="marker-yellow"><strong>Download link #1:</strong></mark> &nbsp;<a href="https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/HINDLE/PROOF/">https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/HINDLE/PROOF/</a><br><br><mark class="marker-yellow"><strong>Mirror:</strong></mark> <a href="https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/HINDLE/PROOF/">https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/HINDLE/PROOF/</a><br><br><mark class="marker-yellow"><strong>DATA DESCRIPTIONS:</strong></mark> Personal Identifiable Information, database backups, employees\executives personal data, corporate documents, customer information, contracts\projects, financial documents, corporate correspondence, etc.</p><p><img src="/uploads/DH_Passport_98fb1fdd08.png" alt="DH Passport.png"><img src="/uploads/RH_Passport_4f2dc28744.png" alt="RH Passport.png"><img src="/uploads/Complete_with_Docu_Sign_GMA_Confidentiality_A_2f3061ac6e.png" alt="Complete_with_DocuSign_GMA_Confidentiality_A.png"><img src="/uploads/Investment_Objectives_signed_784aec1378.png" alt="Investment Objectives signed.png"><img src="/uploads/Hindle_FRS_102_report_2023_fab4d095de.png" alt="Hindle FRS102 report 2023.png"></p>



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx-secondary.exa-networks.co.uk.
  • mail.domain.
TXT Records
  • v=spf1 include:exa-networks.co.uk include:eu.mailgun.org a -all
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDShL/7FeMKf3uK5grIXP64HrTu6lpI/g7MqbzGhs3liZr0/ZMNGSf6vsDbau1cuEeN0IA3rWy6mUZZto" "j5ML18ljfExx5LJl9B74K+H5WnUac/sYzLStAy460XYZTjfzgVacfOq/ZBe3gGcIcxE0lXJx3ywjEizPYMds/NNCbkCwIDAQAB
  • k=rsa; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA92GdOWNEMTcBWnpX4AmrczdwT4Yq25PxFfjKktSpzQM2F17uZIZWwzPt5cmVJXDLMzR1Q0lkJv" "8OZeffYdt/uWX7+Tdgt777xouiARjcJg4p1h/Gi/i50QKkHd4RcsrLnWytcL5cwDJGzdsQzRZpy98Ewn1jPf1WEyZu+hQlmssnnigsebDa4oL09kwmguuK3ykP+5IXy" "4jgTtH0VbCRccB29dCvcY8gcK9R+stvyedJxlthbv+cDFPGr9VnR84yaObVxe/3Ia6G5bBz3/QiFneu0uxB52/1nVQtSORhDdkPfaK3wecbPUwW5wq2GnVjZ/EKr1SK" "TfTOxXzK/CEcdQIDAQAB
Cloud / SaaS Services Detected
Mailgun

Leak Screenshot:

Leak Screenshot