Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo motilaloswal.com

Group: lockbit3

Discovered by ransomware.live: 2024-02-13

Estimated attack date: 2024-02-13

Country: IN

Description:

Sharekhan write to us. I think you might be interested to see their confidential company data.Motilal Oswal provides products and services related to equity trading, commodity trading and investment advisory services, IPOs and SIPs investment, port...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 42

Compromised Users: 4536

Third Party Employee Credentials: 32


External Attack Surface: 110



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • eu-smtp-inbound-2.mimecast.com.
  • eu-smtp-inbound-1.mimecast.com.
  • mailfilter.motilaloswal.com.
TXT Records
  • zoho-verification=zb47937629.zmverify.zoho.in
  • google-site-verification=Kiw0GxobGy1ekXem4QiwQJ8i48pdEKiHHn_ew1ba818
  • google-site-verification=1ZMbPoqIZb5-a019wywjH1g699Z3RtUhZfBameCnBI4
  • atlassian-domain-verification=Ri9lcaboH9Ikc6zBfSo5IT3XyWLC02gLFjvSxxATsGPIYH9VQgpzuMQtU/Gc0Gtl
  • O07tvAAoDW0+5TNuh1KgKyLtK3/LRn+xOMI4WTctQAsppzF/FdWDlO8XBwa2QqMMPYX02JKdWd6zBpHIBalmOg==
  • _globalsign-domain-verification=jZ8tIYzRCTlAKkVplfbDkZbMRKlgTt_6FCzv1I7gB3
  • M1xOSxmzVOMlXT8wGJk8m3id9RGz3cAkuOakak6lHDE=
  • v=spf1 ip4:103.94.240.198 ip4:103.94.240.199 ip4:180.179.38.144 include:spf1.motilaloswal.com include:spf2.motilaloswal.com include:eu._netblocks.mimecast.com include:ncapp02.com include:spf.falconide.com ~all
  • google-site-verification=T-WfKAM6JQW-7DhAvDwc3dRQ9WJ9QTojd5giLvg9QA0
  • google-gws-recovery-domain-verification=52421296
  • google-site-verification=nV9rf6GurRQnDObZB8VK3Kd3uUymP3RXRtCzoe8273Q
  • 4gfn5b7wgy8bwqpslzhc3qqj7qb0llpg
  • MS=ms80119246
  • google-site-verification=IiB9-UOoad-OlytlRsYKcIwuiT4TAP0kNh8EFR5bvnA
  • rfgnfwwfp3wvzqlx727jzn62jtwd1kvz
  • google-site-verification=3osBfvEKzxSDzzw6CnKZ9pVblnaAj9Pa7Z-6yhGAN58
  • y97llsbb2tsrm8mkxxxvvqk3r3q1897q
  • google-gws-recovery-domain-verification=53332136
  • MS=089B80865F1D7086401C521B3281E65041B65D7C
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Zoho Campaigns Mimecast

Leak Screenshot:

Leak Screenshot