Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

The Belt Railway Company of Chicago

beltrailway.com

Group Akira
Discovered 2023-08-10 15:59 UTC
Est. attack date 2023-08-10

Description:

The Belt Railway Company of Chicago has a strong safety foundation and history, and employees continuously strive for zero incidents. But there was an incident that caused 85 GB of their data appearing on our server. BRC management decided to stay silent with us so we will upload all their documents soon.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • beltrailway-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • 20211230201714654frmie8n0m1ltobnix54gw4uoijakysfx6vdo9zfaadycaux
  • 8fngfoqnks9apcl3qoqmfe5qh8
  • v=spf1 ip4:168.245.25.91 ip4:50.171.97.74 ip4:65.115.50.67 include:_spf.psm.knowbe4.com include:spf.protection.outlook.com ~all
  • fj2319kmb69dspmb8lbsjqs4d5
  • 0ed1fe018a6b4407a80106475b83b6b9c89e7ab4e0
  • 5anbbjg970nbqjvaml1r5u2mcu
  • _vovqdhvwx1qxkpvqtvzmw3t7d77kfc6
  • MS=ms39831637
  • ijgha3cm2m1hn6vod3t3rmnjs1
  • _10m54ssk6ggxdz8zpigscjfvuml0id4
  • apple-domain-verification=j3opnESnDoWDJMXY
Cloud / SaaS Services Detected
Apple Microsoft 365 KnowBe4