Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Due to abuse of the free use of Ransomware.live, we have updated our Terms & Conditions. Please review them before continuing to use the Data.
Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

BBBIND.COM

BBBIND.COM

Group Safepay
Discovered 2025-01-23 07:29 UTC
Est. attack date 2025-01-23
Country US
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

[AI generated] BBBIND.COM is a leading American company specialized in automotive aftermarket parts. It sells premium parts, particularly offering high-quality rotating electrical products. The company’s product portfolio includes alternators, starters, brake calipers, power steering products, etc. They also provide their customers with technical diagnostic support and information to ensure the correct product usage.

Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 205

Third Party Employee Credentials: 1


External Attack Surface: 20


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • us-smtp-inbound-2.mimecast.com. Mimecast
  • us-smtp-inbound-1.mimecast.com. Mimecast
TXT Records
  • 0ed1fe018a6ddea92114004302bf1ff7
  • 7pn6apjm8m3ep9j0untv1huc6f
  • 7t12zy1bpgd2xb6kvnwgry2rcrb5p2pr
  • MS=3E3E9D12102009A4C139EF76CFD30F6ACDAD8110
  • MS=ms16444421
  • _5gbonitowc55zd242ufalho7w11wp7z
  • _7f0xaqr7ccekvbuuo8nph25ln890fph
  • _xon7y0n7bycnhxrypdv0lybuuw1q5uu
  • _zk7zr0ra09uesi6wucnp03vs8wrukel
  • fovtgdv2v3ocfcu9fg11fe3ceq
  • gjaam8kofnklp4stpm5oknqj84
  • include:spf_c.oracle.com include:spf_a.oracle.com
  • knowbe4-site-verification=dc83d2a35bbc1c6b130b3afb4bb06a10
  • lUWarZrxWYbZUkh929jxw9VqqMzbhgex3qd9F9/fCUua+OpgLxlRJWnytr8wFh66hGJW8f5ltxrvd3xrECrEvA==
  • logmein-verification-code=ae57439e-9430-4bda-898a-cef3d6fd1d2e
  • s11lxdy1x2tshlvtkx0vht4vk65dyp5f
  • v=spf1 ip4:66.146.185.194 ip4:50.222.58.194 ip4:12.24.75.130 ip4:12.187.169.194 ip4:129.213.175.247 include:spf.protection.outlook.com include:smtp.groovehq.com include:us._netblocks.mimecast.com include:spf.constantcontact.com include:rp.oracleemaildeliv" "ery.com include:spf_" "c.oraclecloud.com -all
  • 0ed1fe018a49cd13236c6e4a36b884147cdecd523d
Cloud / SaaS Services Detected
KnowBe4 LogMeIn Microsoft 365 Mimecast

Leak Screenshot:

Leak Screenshot