Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo onyx-fire.com

Group: lockbit3

Discovered by ransomware.live: 2023-09-06

Estimated attack date: 2023-09-06

Description:

Onyx-Fire Protection Services Inc is a company that operates in the Security and Investigations industry800 GBFinancial documents (balance sheets, budget, PL reports, expense reports, bank statements, statements of payables and receivables, var...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 2


External Attack Surface: 0



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • d197121b.ess.barracudanetworks.com.
  • d197121a.ess.barracudanetworks.com.
TXT Records
  • 9u3t7d460gvpp27qlfnpbkcpqm
  • ucvkfdjm063m06p8gnrrlsc0u7
  • MS=ms35443596
  • pZVvC9HiZESDZIvJ9+VSYQ9GOlxjDMgsNY1UKluyKRgU3ZrMzhodvjrjLzDuexMRSy00KYIZLq9TNQSlYjVKYA==
  • v=spf1 include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:spf-ca.emailsignatures365.com ~all
  • h69hjjp1lh35qj54eagl26hd5t
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot