Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ustg.net

Group: toufan

Discovered by ransomware.live: 2023-12-19

Estimated attack date: 2023-12-19



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • usb-smtp-inbound-1.mimecast.com.
  • usb-smtp-inbound-2.mimecast.com.
TXT Records
  • google-site-verification=E3dSwpgoyWRaK0PeTpll9Lvng3Ji5d53fSpRYj88I6g
  • google-site-verification=GbK8kD06UPlzDPm50gpbYF_trZNnVXxve6_nNvB9iQg
  • cisco-ci-domain-verification=3b40f33920b8f67734d1c7d4b1239b1e520bb56334bdcdce86328f96209d1d55
  • MS=ms77496069
  • adobe-idp-site-verification=6353f687f99287c48a18e26fcb20217b0e31b6b1caf106a7dee33ce2b4b20bce
  • google-site-verification=pQ4y7ux0YiR2WisX0od9Z3C_YV9E3fvaSbOKRJN6Wkw
  • google-site-verification=3mWmpi8Hzo7CO3jvTZROxWwbrT_Bj7hENV3z8ruH0qc
  • v=spf1 include:sparkpostmail.com include:usb._netblocks.mimecast.com include:mail.zendesk.com include:spf.protection.outlook.com include:spf.constantcontact.com a:relay1.signature-it.com ip4:12.29.8.2" "03 ip4:68.187.9.232 ip4:65.69.80.177 ip4:65.69.80.182 ip4:65.69.80.190 ip4:78.129.213.56 -all
  • zoho-verification=zb88984596.zmverify.zoho.com
  • 0ed1fe018ad25cd5fa615747859a25656ae6d7a151
Cloud / SaaS Services Detected
Adobe Microsoft 365 Zendesk Zoho Campaigns Cisco Mimecast