Group:
Akira
Discovered by ransomware.live: 2024-11-18
Estimated attack date:
2024-08-25
Country:
Description:
BULBRITE is a leading manufacturer and supplier of inno
vative, energy-efficient light source solutions renowne
d
You will find a lot of financial papers, employees pers
onal data, customers contacts etc.
We have made the process of downloading company data as
simple as possible for our users. All you need is any
torrent client (like Vuze, Utorrent, qBittorrent or Tra
nsmission to use magnet links). You will find the torre
nt file above.
1. Open uTorrent, or any another torrent client.
2. Add torrent file or paste the magnet URL to upload t
he data safely.
3. Archives have no password.
MAGNET URL: magnet:?xt=urn:btih:8285FC7CDC11405AE215E6A
4C2D9B42D89C9C918&dn=bulbrite.com&tr=udp://tracker.open
bittorrent.com:80/announce&tr=udp://tracker.opentrackr.
org:1337/announce&tr=wss://wstracker.online
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 1
Third Party Employee Credentials: 0
External Attack Surface:
1
DNS Records:
The following DNS records were found for the victim's domain.
- d254709b.ess.barracudanetworks.com.
- d254709a.ess.barracudanetworks.com.
- v=spf1 ip4:100.35.44.58 ip4:216.150.147.21 include:spf.protection.outlook.com include:mailgun.org include:spf.constantcontact.com -all
- sending_domain1066052=8d52863415ff45502f10467b094386e133b0da07af13472de43e55cd30b0309c
- pardot1066052=540552ddda2391ebc0fd7f04b30659d91189073109130fc46eb1aaef19e3feaa
- tqf85f4464nwfz71lfnvv4l3lxt4q4hb
- google-site-verification=UU4pY0n5KhteMr6qODbwpbIVHGe41Gw_9jP-byoZGCw
- v=DKIM1;t=s;p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDTC8/KlvWGFLgN/cIgRNF7NIzg66faq5WrfDfog4yQNq06jeiObGBaxOEDlvPsuZGhXzjOUnZO5Fu7Jzms/zN/Gyc2YUoM7ZFgSjUT6hXZkazqbsZEMl6TgSu4y1Vs9+nG1dZKZHWv7ACyIUhTpbH/xp9aWFYlcNfHI06nSJELuwIDAQAB
- google-site-verification=gAXxdT6_qymh_raCArbSHiuS0FklHRFPgWlmyKmab7U
Cloud / SaaS Services Detected
Salesforce
Mailgun
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.