Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo lapostemobile.fr

Group: werewolves

Discovered by ransomware.live: 2023-12-20

Estimated attack date: 2023-08-28

Country: FR

Description:

PosteMobile S.p.A. — итальянскаятелекоммуникационная компания,принадлежащая Poste Italiane S.p.A.которая работает в секторе мобильнойтелефонии в качестве операторамобильной виртуальной сети (Full MVNO)в сети Wind, а с 2018 года такжепредлагает фиксированную телефоннуюсвязь и интернет-услуги.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar nameshield.net
  • gestint.disit laposte.fr
MX Records
  • lapostemobile-fr.mail.protection.outlook.com.
TXT Records
  • v=spf1 ip4:81.252.20.36 ip4:86.65.155.143 ip4:212.23.173.44 ip4:77.158.14.24 ip4:77.158.14.7 include:spf.protection.outlook.com include:_spf.netcrossing.fr include:spf.voxpay.fr -all
  • MS=ms72772788.
  • google-site-verification=-Mgg2BSvgRkcpMzgz1zM2BtognoYXTddY1h_8UigUtA
  • atlassian-domain-verification=8cTJ1zBLzKE7+/VaG9j1V6FRKqmdyjfzpvSDfb+r3NXtTRRwawsYiZREuuCKhITi
Cloud / SaaS Services Detected
Atlassian Microsoft 365

Leak Screenshot:

Leak Screenshot