Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo rao.hr

Group: apt73

Discovered by ransomware.live: 2024-11-23

Estimated attack date: 2024-11-20

Country: AT

Description:

RAO d.o.o. is a member of the Best in Parking AG group, Austria. With more than a quarter of a century of dedication and professional work, it is a...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 5

Third Party Employee Credentials: 1


External Attack Surface: 12



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • rao-hr.mail.protection.outlook.com.
TXT Records
  • cywetadns-domain-verification=7a039717444e92e4de49557bfa8501ab
  • google-site-verification=4MY13aJkYqIqntO8nKc433lz-VhE4ZwLNMTn8XyHEAQ
  • google-site-verification=IJs-Mo4TL32bG-Xpm-6XwO4Xr_E9Ytwo59FmH6cgHKE
  • knowbe4-site-verification=0d5920564bfbed88d5fb091787480530
  • v=spf1 mx ip4:185.235.215.5 ip4:185.235.214.5 ip4:195.190.10.0/24 include:spf.protection.outlook.com -all
  • MS=25E34AD8D307E30BB0683C7EB4094903987EF02A
  • MS=ms25911376
  • amazonses:Y+iRiGdnIyQfbOry7o6ANR29VNFdiCKS4IXehD1b4ZY=
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 KnowBe4

Leak Screenshot:

Leak Screenshot