Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

heidelberg.com

heidelberg.com

Group Clop
Discovered 2023-06-14
Est. attack date 2023-06-14

Description:

Print and Packaging Solutions - HEIDELBERG

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse@cscglobal.com
MX Records
  • heidelberg-com.mail.protection.outlook.com.
TXT Records
  • mongodb-site-verification=G5wV4LrloeRk5yT0WJtQ0tbXlW1koXuC
  • atlassian-domain-verification=Gp9iPHP2vr9B4bfi6qitniyB3i2sJwTVh5wgGHknnMVXCegQopGRa4xIg4blqM4h
  • docusign=5e5a5f1a-6d35-4c30-a4ce-691a257cc621
  • apple-domain-verification=PytmDtgCcIt7q4Lq
  • google-site-verification=7e7_r8MFopNYp121G3wis8Wn9KaMHHYvgq__hvCAXik
  • skvug425
  • Foxit-domain-verification=833a0d0cb4b0e5e591f59191d2df3a02
  • bw=cbzmWRHeDVDoMvCb6WvZ19z2jYfKpC3x7GQZdtwrC29K
  • cisco-ci-domain-verification=4ca655b3cb76d1e1a27fd0c47c8126c91e06cd205dd870d06cfd7ced4879824b
  • teamviewer-sso-verification=03da593653d74fe29b61c44a5edae2b6
  • miro-verification=499d0c18694c9a2c466768405e2a97bc6e19c007
  • 6aFDF11x200II79Isx4LLtjBULhrsfen5vnk4h9B1DJC1biMaxVx+4iAI27KjOQGA3rGJgR/30H9OOBgUzG7Ww==
  • MS=ms68306619
  • pardot991622=d01dab3ad53e88957202c915d49ffe9fb20a04c6f5e61eab71d3c3dec242ae64
  • docusign=cfbe89a7-4c68-4d04-962b-61b853ab7cf7
  • brevo-code:a4e2850914c69e1c7dfb295d08c702c1
  • v=spf1 include:a._spf.heidelberg.com include:a2._spf.heidelberg.com include:a3._spf.heidelberg.com include:a4._spf.heidelberg.com -all
  • google-site-verification=jYBQRK2HBa56JJO454lUFc08YAbXp3QJzjLTwi9biOA
  • pardot973933=18b9619800eb86b55b895fda2d75a1acd791f0efbf9ec073f00be731d7b1fc59
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Salesforce Miro Teamviewer Cisco DocuSign

Leak Screenshot:

Leak Screenshot