Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo mnorch.org

Group: lockbit3

Discovered by ransomware.live: 2024-01-31

Estimated attack date: 2024-01-31

Country: US

Description:

Led by Music Director Thomas Søndergård, the Minnesota Orchestra is a Grammy Award-winning orchestra known for acclaimed performances around the world.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • alt3.us.email.fireeyecloud.com.
  • alt1.us.email.fireeyecloud.com.
  • primary.us.email.fireeyecloud.com.
  • alt2.us.email.fireeyecloud.com.
TXT Records
  • amazonses:qLExZuguB/b6A0JW93SXnS3ReLAIlCCjsB/PVgfwORU=
  • atlassian-domain-verification=PwqmDkphaXVcowJ7vreUSEUGNNQ/0JJroa8hNS5EV3yeRN85vEjahl1taYrYtcDL
  • atlassian-sending-domain-verification=2cb5a789-6fbb-4cde-97a9-becdff76f146
  • apple-domain-verification=2W1cNVz0RyjF0ztM
  • MS=ms92197771
  • google-site-verification=QD0v_n0_CuK4s0En7o3E9JghUi0S9pVtyDR0Kw-RkTw
  • amazonses:x0CLW3R36Ehn9bmbzHJ5Tu+wHrG1BnfJ9WbBeGjsk2M=
  • v=spf1 include:spf.protection.outlook.com ip4:38.126.182.36 ip4:38.126.182.34 ip4:38.126.182.35 ip4:65.144.33.10 ip4:65.144.33.11 ip4:65.144.33.12 ip4:65.144.33.13 ip4:65.144.33.14 ip4:65.144.33.90 ip4:65.144.33.91 ip4:65.144.33.92 ip4:65.144.33.93 ip4:65" ".144.33.94 ip4:209.98.198.20 ip4:208.42.184.161 ip4:173.240.29.53 ip4:208.42.184.161 ip4:173.240.29.58 ip4:216.14.182.220 ip4:173.160.118.61 ip4:72.50.228.83 ip4:72.50.228.82 ip4:72.50.228.84 ip4:72.50.228.80 include:sogosurveys.com include:emsd1.com incl" "ude:_spf.atlassian.net -all
  • have-i-been-pwned-verification=0328d317948870d7aa83d64aff647871
  • openai-domain-verification=dv-kagLPSHK8mIT3Bc1WBJbcLbw
Cloud / SaaS Services Detected
Apple Atlassian Amazon SES/WorkMail Microsoft 365 Have I Been Pwned

Leak Screenshot:

Leak Screenshot