Group:
Clop
Discovered by ransomware.live: 2025-02-27
Estimated attack date:
2025-02-27
Country:
Description:
[AI generated] SupplyOn.com is a leading supply chain management solutions provider for manufacturing and logistics industries. It offers various services including procurement, quality, logistics management and more. The platform allows businesses to streamline and automate their processes, helping them to enhance transparency, cut costs and improve overall efficiency. Founded in 2000, SupplyOn.com operates globally, serving clients ranging from SMEs to large multinational corporations.
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 351
Third Party Employee Credentials: 0
External Attack Surface:
21
DNS Records:
The following DNS records were found for the victim's domain.
- hostmaster@tds.de
- legalservices@eurodns.com
- juerg.oberholzer@supplyon.com
- backmail.supplyon.com.
- mx-in01.eu.retarus.com.
- mx-in02.eu.retarus.com.
- google-site-verification=Y2pR0mk8y1fWdBpwrYugjvzLP2z3JSQrxbiEanoBZbs
- _globalsign-domain-verification=JmAKyJ6L0KfNHN9wJfaYR03yArP62m5IP9TFby7Dgd
- miro-verification=f331c1aa640b2de2c4f9d24c12016cc0c20a37d4
- atlassian-domain-verification=MVUfUD3fGCGaU0Sz9y2UGm4dyzoab3ObgwFASGmdd6yZMMi2kqQsZMMNbAdBIL9t
- atlassian-domain-verification=96PvEyHVFvzUkQdbNiuwqa814MvoM0W7WVXcsQaW5KNzBfcD7a0kLoNSCygKo5x4
- swisssign-check=BhK9Tuy-bge9AQLNKgVNlU3rSKk
- v=spf1 include:_spf.pool1.transactional-mail-a.com include:_spf.pool2.transactional-mail-a.com include:_spf.retarus.com include:_spf-ssg-a.microsoft.com include:_spf.atlassian.net ip4:193.41.8.24/29 ip4:185.170.26.84 ip4:185.170.26.85 ip4:185.170.26.68 ip" "4:193.158.235.233 include:supplyon.schalk-it.de include:_spf.rexx-suite.com -all
- Dynatrace-site-verification=4d953486-801f-4bf1-b044-0f7b36f67abf__7qvbvametlf2qjn2qnaqt622o7
- MS=3273FE94FA2DA34F6DFD096D94C0D4F8002633F6
- 9uzLE2ZyOOAuICIpmCgtA6KW2pSVXMOcJYUPvby8FdEPv53hednBtjZotWHyqqi4lmd3d4KnK+RlpG3WWfUb/A==
- +Vt61QYMo0bbMaI5IjU75UjaCmpM3idGbxwnRwvI5h8=
Cloud / SaaS Services Detected
Atlassian
Miro
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.