Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

nrcs.net

nrcs.net

Group: Blacksuit

Discovered by ransomware.live: 2024-10-25

Estimated attack date: 2024-10-25

Country: CH

Description:

NRCS.net is an Italian-based company specializing in the development and provision of software solutions for the hospitality and retail sectors. It offers a range of services, including point-of-sale systems, management software, and digital payment solutions. The company focuses on enhancing operational efficiency and customer experience through innovative technology tailored to client needs.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 19

Third Party Employee Credentials: 19


External Attack Surface: 0



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • MS=81134123FAEEA0D4D1C69CDABF846111E7E5066E
  • apple-domain-verification=rVPamKC9PnuzVNdT
  • google-site-verification=xdiPjUcA9qj8xRK3tVWkm-1sEQB-5HtEDGJxh7iOU9c
  • v=spf1 mx include:_spf.bbnotify.net ip4:208.108.153.214 include:mailgun.org include:_spf.google.com ~all
  • google-site-verification=QU0gdG-U8lndELMu7AWyqM8m_iHa6FPTwRgRsN6LV6c
Cloud / SaaS Services Detected
Apple Mailgun

Leak Screenshot:

Leak Screenshot