Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

lankacom.net

lankacom.net

Discovered 2024-04-11 19:12 UTC
Est. attack date 2024-03-14
Country LK

Description:

LankaCom is a Sri Lanka–based telecommunications company. Founded in 1991, it is a subsidiary of Singtel and was the first company granted a Communication Operator License in the country.

Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 970

Third Party Employee Credentials: 14


External Attack Surface: 105


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • ALT1.ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT2.ASPMX.L.GOOGLE.COM. Google Workspace
  • ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT3.ASPMX.L.GOOGLE.COM. Google Workspace
  • ALT4.ASPMX.L.GOOGLE.COM. Google Workspace
TXT Records
  • google-site-verification=VA4wtgs4CzWfpnKmWKJnaPjVY4mNAY6QSRdQhpj8FMk
  • nrsl1punme8s890e0msi45cd16
  • PurpleRidge-o1u5-4xWd-thPX-lcCY-aLPD
  • 3ep6h30kbf815vsckhe0gg0stm
  • MS=ms12334548
  • v=spf1 ip4:203.143.36.6/32 ip4:203.143.21.12/32 ip4:203.143.21.14/32 a mx include:spf.protection.outlook.com include:_spf.google.com -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot