Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo proxy-sale.com

Group: ransomed

Discovered by ransomware.live: 2023-09-09

Estimated attack date: 2023-09-09

Description:

We have been able to access all of linktera critical infrastructure including the database, we dumped and then deleted all backups from the serversWe require a ransom of $12,000



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namecheap.com
  • support proxy-sale.com
MX Records
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
TXT Records
  • v=spf1 a mx ip4:51.89.99.240 ip4:185.141.164.27 include:_spf.google.com include:amazonses.com ~all
  • amazonses:NEdZI4BANw78/LrxXHxAqAMSCfjwIQSRR1wA9wFz3kA=
  • cryptomus=554f6ea5
  • google-site-verification=Csz51q9H_A0BSUHEnpdb62OjatNHob3upCKuZSt3fuE
Cloud / SaaS Services Detected
Amazon SES/WorkMail