Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

galbusera.it

galbusera.it

Discovered 2024-02-09 08:38 UTC
Est. attack date 2024-02-07
Country IT

Description:

Galbusera is an Italian food company that produces biscuits, crackers and snacks. There were stolen about 500 gb of data including their contracts and private data of their employers and clients

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • galbusera02.esvacloud.com.
  • galbusera01.esvacloud.com.
TXT Records
  • GYZ/TZsfLWBFGnHGSeVss92+BV7l/3Tjui68OqTZYb7hRw1v7sXktEdt09hIS2+zBSfdhzztuDFdcBqXbXLCrQ==
  • anthropic-domain-verification-7jc05x=DvLdVqlID6MqUhHtgspLABqg7
  • google-gws-recovery-domain-verification=59449672
  • google-site-verification=SAcGs_S5Crup6wg-f_Tk0D3Bdjb8vEmlE5jkPoZkSRI
  • have-i-been-pwned-verification=dweb_iuozn7s6fdive8qt8o352w5n
  • have-i-been-pwned-verification=dweb_m15n39a51be6pg92x8fiv3bd
  • trend-micro-v1-domain-verification.4094b83346889ad9bbfe1de959795342=ea053693-7a0f-44c4-9b5c-3727699c88cd
  • v=spf1 include:spf.protection.outlook.com include:em4318.galbusera.it ip4:93.43.54.96/27 ip4:93.43.54.128/27 ip4:50.31.52.63 ip4:80.252.224.63 -all
Cloud / SaaS Services Detected
Anthropic Have I Been Pwned

Leak Screenshot:

Leak Screenshot