Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo iescomm.com

Group: chaos

Discovered by ransomware.live: 2025-04-15

Estimated attack date: 2025-02-19

Country: US

Data exfiltrated: 1000 GB

Description:

904.6 Million | Commercial & Residential Construction IES Communications, LLC (Integrated Electrical Services) We are the national leading provider of communications technology, systems, and services. IES Communications, LLC; The right team to get the job done


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 21

Compromised Users: 0

Third Party Employee Credentials: 6


External Attack Surface: 6


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx2.ies-co.iphmx.com.
  • mx1.ies-co.iphmx.com.
TXT Records
  • EyjjrdWtiUpyvjpftnA5q5r9h73cReRBKEC8tFLIjrW/lNDJogmTfY1471YF2Lhp4alIywt5td4jvyHqGtrZZQ==
  • MS=ms26497194
  • apple-domain-verification=DyrBPvi3fLthKFWm
  • dropbox-domain-verification=o1fs9ui9301u
  • google-site-verification=vrFC00lVanXPH0c0rpmp0xTsgrj2C_qSXazQy3JuLjc
  • google-site-verification=LU9R3nyo7rk0Eax-dWdvmTwDaI9JPtk-FEzLPBoeIvY
  • v=spf1 include:spf.zohomail360.com include:servers.mcsv.net include:mail.zendesk.com include:spf-us.emailsignatures365.com include:spf.protection.redatatech.com include:spf.protection.outlook.com exists:%{i}.spf.ies-co.iphmx.com ~all
  • fA8/CqDIttvP70J5/bc4vi4bDTAg3bQMww4RNuM0aEQks5SGJkQ74QiGc7eivNdjX5JvavNek5GPP0MUm5UCng==
  • amazon-business-verification=d566774522ec5df570b9e8ab3e6bc0dd75d1eb24093c6e933cd04c123f52fba2
  • atlassian-domain-verification=V1mpkCRpp7BaFNhlccViib9LuSpB5ZDKV9aAC5r2r2KPZtAOFGiaaF5agbkAX2v/
  • docusign=32e36ba7-59ae-4e1f-9826-a914c5bdcb64
  • uah3+xOL00xxzxfy+6k4eDt4Mdzd1EfDoSMcQISxNPAnfDoSzWDilfP0bgB7dFNLaPv6xYTjudvmamHd9tVu3g==
  • autodesk-domain-verification=So8-2vc-lgxnGRyE8oIw
Cloud / SaaS Services Detected
Apple Atlassian Box Dropbox Microsoft 365 Zendesk Autodesk DocuSign

Leak Screenshot:

Leak Screenshot