Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

ICSYSTEM.COM

ICSYSTEM.COM

Group Clop
Discovered 2023-06-16 14:36 UTC
Est. attack date 2023-06-16
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Debt Collection Services & Solutions - IC System

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • icsystem-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 ip4:66.162.227.135 ip4:66.162.227.230 ip4:209.240.94.7 ip4:199.122.124.59 mx:mail.icsystem.com include:aspmx.pardot.com include:spf.protection.outlook.com include:_spf.salesforce.com ~all
  • fpa1j0o0q3uruame3dbek9oee2
  • rXOf/rPZRH9LxcZREULV0PSWik+hoInbhG1lzlsBaKcHijPYArrfc/bMVvvPABK5hvhEMpw+0A+Re+MbXSJNWQ==
  • hpe-greenlake-domain-verification=457337326d6c5776554c393379705a456879546a315436364d6e304d644f5859
  • pardot_54152_*=81d106d7287d9c6f4cfaff69340e7c45471cff753892e5de65b646eebf0cf279
  • atlassian-domain-verification=a1F98YQcbtUaiRomabPD3DcMStd2mBAXZwkWOuiW7xpo5eZijcasWu9xbEI1zxKP
  • ojdhkj926fvtqiggo3gbsvv50p
  • dj9wqqkHOi7vI7TrNmsi5qSTdvWIYw/rIAte96k0NJIIbaMswLwgmQa26rMiGwibb98gFtewERXYJcldjPAvqQ==
  • sending_domain54152=7ad6f21ebd4cbca14ef8d4d252d560db4d039d8fd4f849bf8e533660f7b6a41b
  • mcer10fpse2uhetdav9ios1vr4
  • 2iBjso7PoeJ2Mw0rKBC+HkCGxcyLmdMoZLqNk/wEA4s5mD+wrYEp+Cfg1x+6T+8SzKuNQaoZboTIZ0A8LO5O0Q==
Cloud / SaaS Services Detected
Atlassian Salesforce

Leak Screenshot:

Leak Screenshot