Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

SPGus#####

spgusa.com

Group Clop
Discovered 2024-12-24 23:05 UTC
Est. attack date 2024-12-24
Country US
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Presumed victim name: SPG USA - Cl0p announcement. We have data of many companies who use cleo. Our teams are reaching and calling your company and provide your special secret chat.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 3b446f342a4efc13cd09a60a4a28ee3301884870ed0cc6cbee11fcb0c68e1efdspgusa.com.whoisproxy.org
  • 3b446f342a4efc13cd09a60a4a28ee33dd986fb9feac3251ced867279b0ffe0aspgusa.com.whoisproxy.org
  • 3b446f342a4efc13cd09a60a4a28ee3342fdb5d95e504e50973574f3414d24e6spgusa.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • 3b446f342a4efc13cd09a60a4a28ee33cf91dc584262eabd5e5d231e07a9d341spgusa.com.whoisproxy.org
MX Records
  • spgusa-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=IC8xWgC0ES2o_3rartH6HiOzB-bwIrvkEFGSGawg_JU
  • google-site-verification=_xnl-yhgkjuBphjAatbxuP7svvuy1ex0FPIOnccvQU4
  • lovable_verification=08bSQ6lKtk69WUXDjHCa
  • v=spf1 include:spf.protection.outlook.com include:west.spf.spgusa.com include:aws.spf.spgusa.com include:emailus.freshservice.com include:spf.emailsignatures365.com include:spf.exclaimer.net ~all
  • MS=ms31566424
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot