Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Alphv
Discovered 2023-07-26 15:32 UTC
Est. attack date 2023-03-27
Country CN
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

All4Labels has been a long-standing partner for major local and international companies in Europe, Latin America, Africa and China. Transforming the packaging industry — Becoming a global leader for Sustainable & Digital Packaging Solutions. Connecting brands & consumers with innovative and sustainable packaging solutions

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabusetucows.com
MX Records
  • mx02.hornetsecurity.com.
  • mx03.hornetsecurity.com.
  • mx04.hornetsecurity.com.
  • mx01.hornetsecurity.com.
TXT Records
  • pardot929673=a65c40ebe71f68af940ced1df90035565286b4d22c7e0d64535830d37d8a7e82
  • pv8b5wbj8zt03g1qyhq8hc98w3n5d4fp
  • teamviewer-sso-verification=a46a46ad3190405491c96720c62cf474
  • v=spf1 include:spf.hornetsecurity.com include:spf.protection.outlook.com include:spf.eu.exclaimer.net ip4:195.222.249.150 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email ~all
  • 7c2460e38ad5a75773844b0c2e04e027
  • CxM5AyIIgO9OxbJxezTrOeI8Ph3cJ4yYacSD1GNrbmX8MY9zMdbdthg8vyKPCRWDjhNz1nTPvRlHozp9SEb+xw==
  • MS=9FD1617E5BB258F1FD0775B07E75BE669729D515
  • _globalsign-domain-verification=QZlLJ-J9EEYd4WY3mvdt3qN_ucs3aAnNBKaaXEEMxL
  • apple-domain-verification=kXVMJCkngVmt2eWs
  • atlassian-domain-verification=aIAzjabODuZDcZVihNBfKezkRtADP77UJgOIV1AziNlS5ZQg4FqBLpltawiyCDAc
  • docusign=8e3052b8-d9d0-4e61-adb0-07a33fb99613
Cloud / SaaS Services Detected
Apple Atlassian Global Sign Salesforce Teamviewer Hornetsecurity DocuSign

Leak Screenshot:

Leak Screenshot