Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

pelmorex.com

pelmorex.com

Group: Lockbit3

Discovered by ransomware.live: 2023-09-22

Estimated attack date: 2023-09-22

Country: CA

Description:

REVENUE: 200KK USDFounded in 1989, Pelmorex is a private, family-owned, international weather information and data management company. Pelmorex is located in Canada. Read More. View Company Info for Free. Who is Pelmorex. Headquarters. 2655 Brist...

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 2



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@rebel.com
MX Records
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
TXT Records
  • _w4cgam3x0k44z2qmchadarnmddrscyt
  • duo_sso_verification=yVVGzmkk1HYMDPVD74OxxTmlyDiTsh0HtOYrdMEysNPNcMpfFCQsO2FR0f7ARzgv
  • google-site-verification=1iH1vT7dJ70qWpE0lK7FBDmw8pArDGLk_IkiXEplbrs
  • google-site-verification=VYxdtJVWSKCk8dOqzH2gWORpCJtssyILn1Leupzb2RQ
  • google-site-verification=Vdcr5fPf66sDRmRfJniNR8Z9ccBBVH2HwnOzJpbX3X8
  • google-site-verification=nvSoGfnxW9kG6XY5CfzV4aeLAPPNNfqw1Z4_0wI52NE
  • mandrill_verify.OtBRgdj_VCRIwJiafPRjow
  • miro-verification=898a2831861ff8dc682763425f849e56e2606dc1
  • v=spf1 ip4:198.168.5.0/24 ip4:207.96.160.0/24 ip6:2602:803:0:2711::456 ip4:103.115.9.248/29 ip4:103.115.10.248/29 include:_spf.google.com include:woexchange.com include:_spf.wpcloud.com include:amazonses.com ~all
  • _globalsign-domain-verification=McylXwrNnEeIdI2ibcBexACy3mZ_ogQ_ORIe68L2Oz
  • _globalsign-domain-verification=c8bA7Y1YIgwQxoUJnaBzCPEiY-RwhgE0I9qFtQ9m07
Cloud / SaaS Services Detected
Amazon SES/WorkMail Mailchimp Miro Cisco Duo

Leak Screenshot:

Leak Screenshot