Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

myerspower.com

myerspower.com

Discovered 2023-02-16 23:23 UTC
Est. attack date 2023-02-16
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

myerspower.comlabriegroup.commielectric.comaeti.comthese four companies were in the same domain! all their networks were encryptedroot:gear$N0stra*aeti\admin:_NYt7~St]ye'root:$a53ty!myersamerica\tadmin:$a53ty!myerspower:Xiw6zvbp37gx...

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • mxb-009d3601.gslb.pphosted.com. Proofpoint
  • mxa-009d3601.gslb.pphosted.com. Proofpoint
TXT Records
  • uh5l20cd6sd0gt1gqfmd65aojj
  • n2vddhd7qklhr8uh06ghl9oghp
  • v=spf1 include:spf.protection.outlook.com include:spf-009d3601.pphosted.com -all
  • MS=EBF4FD90E997FC03269DD6A9E8DD1C64E424AA5D
Cloud / SaaS Services Detected
Proofpoint