Group:
Blackbasta
Discovered by ransomware.live: 2023-11-30
Estimated attack date:
2023-11-17
Country:
Description:
Anderson Jones, PLLC is an award-winning, full-service law firm located in Raleigh, N.C. serving North Carolina and Georgia. Concentrating in the areas of construction law, construction litigation, lien and bond claims, contracts, administrative law, workers’ compensation defense, real estate, employment law, OSHA defense, estate planning, estate administration and settlement, and general commercial litigation, Anderson Jones represents local and national clients in both state and federal courts. Built on the core principles of solid values, integrity in billing, aggressive pursuit of business solutions, efficiency through technology and tenacious representation, Anderson Jones’ attorneys lend leadership, expertise and professionalism in legal matters to always achieve the best attainable results for clients.SITE: www.andersonandjones.com Address 421 N. Blount Street Raleigh, NC 27601 UNITED STATESFULL DATA SIZE: 360gb 1. Health Insurance 2. W-9 forms 3. 401K forms 4. ConfidentialityNETWORK: ANDERSONJONES-------------------------DOMAIN ADMINS------------------------- Administrator Administrator Tmpl aptiis Network Admin SBS Backup User SBSMonAcctandersonjones.local\Administrator ds#$fsKFS3-------------------------DC------------------------- FILESERVER.andersonjones.local 192.168.1.3 Windows Server 2012 R2 Standard-------------------------SERVERS------------------------- RDS-SRV.andersonjones.local 192.168.1.9 Windows Server 2012 R2 Standard 2012-VMHOST-AJ.andersonjones.local 192.168.1.41 Windows Server 2012 R2 Standard DA-SRV.andersonjones.local 192.168.1.8 Windows Server 2012 R2 Standard 2012VMHOST.andersonjones.local Windows Server 2012 R2 Standard JURIS.andersonjones.local 192.168.1.4 Windows Server 2012 R2 Standard
DNS Records:
The following DNS records were found for the victim's domain.
- andersonandjones-com.mail.protection.outlook.com.
- v=spf1 ip4:173.95.110.34 include:mailgun.org include:spf.protection.outlook.com ~all
- MS=ms39200743
- google-site-verification=7Y7Ay5WcKMpn4YvcKrS5jv01RhYjyNyC_zOJmopGPqg
Cloud / SaaS Services Detected
Microsoft 365
Mailgun
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.