Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo nrcs.net

Group: blacksuit

Discovered by ransomware.live: 2024-10-25

Estimated attack date: 2024-10-25

Country: CH

Description:

NRCS.net is an Italian-based company specializing in the development and provision of software solutions for the hospitality and retail sectors. It offers a range of services, including point-of-sale systems, management software, and digital payment solutions. The company focuses on enhancing operational efficiency and customer experience through innovative technology tailored to client needs.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 19

Third Party Employee Credentials: 19


External Attack Surface: 0



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • google-site-verification=QU0gdG-U8lndELMu7AWyqM8m_iHa6FPTwRgRsN6LV6c
  • MS=81134123FAEEA0D4D1C69CDABF846111E7E5066E
  • apple-domain-verification=rVPamKC9PnuzVNdT
  • google-site-verification=xdiPjUcA9qj8xRK3tVWkm-1sEQB-5HtEDGJxh7iOU9c
  • v=spf1 mx include:_spf.bbnotify.net ip4:208.108.153.214 include:mailgun.org include:_spf.google.com ~all
Cloud / SaaS Services Detected
Apple Mailgun

Leak Screenshot:

Leak Screenshot