Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo teamwass.com

Group: Ransomhub

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: US

Description:

[AI generated] Team Wass (Wasserman) is a global sports, entertainment, and lifestyle marketing and management agency. They provide innovative solutions to athletes, brands, properties, and talent in various sectors such as sports, entertainment, and the culture. The services they offer include talent management, consulting, partnerships, business development, and sporting events management.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • figma-domain-verification=0d8cdfe131cffd003fad372865d5aaa4c786e8bf5ffd5371ca9a9b948c884773-1737538574
  • 2d00e3dc859b0430d30a8486bca92e0f8cbe07eb
  • atlassian-domain-verification=PJBhgYIWBWEeARxKRe15ZWZIs1v6ciu0VLSehTmMnB1iShGGjD3em9fmrjlTu77b
  • ZOOM_verify_ud5nhRprSjub_TCI8yVejA
  • bw=d58OiwGvbJdJAmlGHsJpLolSYK0EqBIlL5Gu52xOXwAd
  • d2Fzc2VybWFu
  • sending_domain1079352=7d11415b6580230056cb887fbaec60fd479f8b43eb2b8b1f02728a49a59d33a3
  • google-site-verification=YbtTyhB5G8vwTpRAgIPCrS-37TW4IX4C_ibl0w8-TYg
  • pardot703903=6157d89b24826984aefc18745f63b64a065dc6f67dff5e36f1aafcd94e315eaa
  • l76m9491nlf3nb0xbvlx4mvy2gqr1qjm
  • apple-domain-verification=_-83NYv3uLMxqAjXuWNYbgJ0mkmpCqxWORuzsBu-n6Y
  • google-site-verification=oQpgH_SSLf_v7q6UArX9z3TqdFmv8kkSp-DreLG9EF4
  • smartsheet-site-validation=ACKBjMU71nh5z8fWQ3wS60higA_KQUbT
  • google-site-verification=jlD_x02dQPx0dk1NkR2XbZ2Xf1_QFYzwpVwx7lorqZI
  • uber-domain-verification=b9b68ad7-bfee-487f-a9af-26977c533b78
  • cisco-ci-domain-verification=4f16a588e872fb673b321c68048c5799ec5e0d0d91eea3b40bb0b91b7896f32e
  • smartsheet-site-validation=vwvXxJPIfHmpyH7r8cUPSN8MCvhJC44_
  • sending_domain703903=63d0672abaf9c83d9a0cbd33f3bf82aeeb6515f0a131eb6c8bdd584488051ff6
  • v=spf1 include:universalspf.org ~include:x.universalspf.org include:_spf.mailersend.net ip4:3.9.197.219 ip4:162.13.63.232 include:mailgun.org include:spf-us.emailsignatures365.com include:us._netblocks.mimecast.com include:_spf.bigcommerce.com include:spf" "1." "formassembly.com include:_" "spf.salesforce.com include:aspmx.pardot.com include:sendgrid.net include:spf1.corebridge.net include:email.freshservice.com include:spf.mandrillapp.com ~all
  • 4fv4683ro844nfmnv37fff1802
  • klaviyo-site-verification=c84gXS
  • docusign=444d3052-d033-41a8-a538-4af6a69f1e2a
  • slack-domain-verification=mEEmTlgYaH7Ipd4DyE4mjh9j0B247E2rIvGcarOp
  • mandrill_verify.uzBGY0ic5O2qVFNUCLjYHg
  • adobe-idp-site-verification=f782c97114a07bab3a99840f09dac068198223e4d0577608d981959e3afce83e
Cloud / SaaS Services Detected
Adobe Apple Atlassian Mailchimp Salesforce Slack Mailgun Mandrill Cisco SendGrid Mimecast DocuSign Zoom

Leak Screenshot:

Leak Screenshot