Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo swiftair.com

Group: Lockbit3

Discovered by ransomware.live: 2024-01-20

Estimated attack date: 2024-01-20

Country: ES

Description:

Swiftair is a leading company in the airline sector, offering both freight and passenger transport. Unfortunately, they dont care at all about the security of corporate information and personal information of its employees. We give them the last chan...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 16

Third Party Employee Credentials: 7


External Attack Surface: 12



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@registrador.es
  • abuse@tecnocratica.net
  • contact@registrador.es
MX Records
  • swiftair-com.mail.protection.outlook.com.
TXT Records
  • a75uinb4vc94dolvf5qvn8r38
  • hdj6po1a1u652nf4knkolv4egp
  • v=spf1 ip4:195.235.66.98 include:spf.protection.outlook.com include:genetsis.info -all
  • MS=ms48390388
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot