Group:
Cactus
Discovered by ransomware.live: 2024-10-08
Estimated attack date:
2024-09-19
Country:
Description:
<p>Design & Accessories.<br><br>“Established in 1971, Matki have pioneered innovative design in luxury showers and brassware for over 40 years, enabling a deep understanding and a pragmatic approach to shower design - technically, aesthetically and architecturally.”<br><br>Website: <a href="https://www.matki.co.uk/">https://www.matki.co.uk/</a><br><br>Revenue : $23M<br><br>Address: Churchward Rd, Yate, Bristol, BS37 5PL, United Kingdom<br><br>Phone Number: +44 1454322888<br><br><mark class="marker-yellow"><strong>Download link #1:</strong></mark> <a href="https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/MTK/PROOF/">https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/MTK/PROOF/</a><br><br><mark class="marker-yellow"><strong>Mirror:</strong></mark> <a href="https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/MTK/PROOF/">https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/MTK/PROOF/</a><br><br><mark class="marker-yellow"><strong>DATA DESCRIPTIONS:</strong></mark> Personal Identifiable Information, database backups, financial documents, executives\employees personal data, corporate confidential data and correspondence, etc.</p><p><img src="/uploads/Laura_Passport_Scan_190f427137.png" alt="Laura Passport Scan.png"><img src="/uploads/Nicholas_Passport_Scan_2024_380f6d06da.png" alt="Nicholas Passport Scan 2024.png"><img src="/uploads/ROSS_NIXON_DRIVING_LICENSE_6151e69b1e.png" alt="ROSS NIXON DRIVING LICENSE.png"><img src="/uploads/Insurance_Cyber_2022_75bd9a730a.png" alt="Insurance Cyber 2022.png"><img src="/uploads/Employee_checklist_E_Stevenson_4a1337188b.png" alt="Employee checklist - E Stevenson.png"></p>
DNS Records:
The following DNS records were found for the victim's domain.
- matki-co-uk.mail.protection.outlook.com.
- _globalsign-domain-verification=p3GxW0kBBX3ebbg-0f0E3bbTpnJnlxc9rhfd01lH8p
- MS=ms30299178
- v=spf1 ip4:185.179.209.194 ip4:46.17.89.40/32 include:spf.protection.outlook.com include:spf.stackmail.com include:spf.uk.exclaimer.net -all
Cloud / SaaS Services Detected
Microsoft 365
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.