Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

SPGus#####

spgusa.com

Group Clop
Discovered 2024-12-24 23:05 UTC
Est. attack date 2024-12-24
Country US
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Presumed victim name: SPG USA - Cl0p announcement. We have data of many companies who use cleo. Our teams are reaching and calling your company and provide your special secret chat.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 1c458b3090e99f00c8ec39158ac0fd3ca4b96b2f3f7d0bc7ccfa9964676291b5spgusa.com.whoisproxy.org
  • 1c458b3090e99f00c8ec39158ac0fd3c787cd54de73869b7100fc92bc311669cspgusa.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • 1c458b3090e99f00c8ec39158ac0fd3c2abab721ffcc7dfddb4b8146331b72a8spgusa.com.whoisproxy.org
  • 1c458b3090e99f00c8ec39158ac0fd3cd3d829694c63e1d84d9879454c252f86spgusa.com.whoisproxy.org
MX Records
  • spgusa-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • lovable_verification=08bSQ6lKtk69WUXDjHCa
  • v=spf1 include:spf.protection.outlook.com include:west.spf.spgusa.com include:aws.spf.spgusa.com include:emailus.freshservice.com include:spf.emailsignatures365.com include:spf.exclaimer.net ~all
  • MS=ms31566424
  • google-site-verification=IC8xWgC0ES2o_3rartH6HiOzB-bwIrvkEFGSGawg_JU
  • google-site-verification=_xnl-yhgkjuBphjAatbxuP7svvuy1ex0FPIOnccvQU4
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot