Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo rhenus.group

Group: lockbit2

Discovered by ransomware.live: 2022-06-20

Estimated attack date: 2022-06-20



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mxa-008e5201.gslb.pphosted.com.
  • mxb-008e5201.gslb.pphosted.com.
TXT Records
  • teamviewer-sso-verification=279148f570cc46d9ab33592b26e09a6b
  • v=spf1 -all
  • MS=ms49134602
  • Rs0nvDCY+5kutNV5bOUe86IH8hQPp1OcRD6iYD4gBX60rn4Ayv5mA+tO9i4mhumopw1JokTKuw5Qr+yBr0lrJA==
  • d365mktkey=zxZunFjlkwFYbN5e3OgMFFkJUvG8GcRbdi6Ke8Jr710x
  • facebook-domain-verification=xrvu30q8qagr24fosgi3fgdyrh151q
  • google-site-verification=E2FEU0E6wheWnbbnIgmLUugHD8eykxCeQ6R4Vb6crAw
  • google-site-verification=mO3fI5JsGGQa7-v6uttyJzxnyskOtlpMsDa8WZzcRTA
  • postman-domain-verification=aa362cc7fc5b208d4d39dfe36bd88945cde2b1b55101ed9ba6e52a0ab6025f8ada1c5eaf895a9313c9bb4150d6362c0209d341066e552809cc834e7e5c96c3e0
  • teamviewer-sso-verification=09b95bfcaa0a43449feb26f58a0884d5
Cloud / SaaS Services Detected
Microsoft 365 Teamviewer