Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Ralord | Parent: raworld

| RaaS

None

Victims
19
 
First Discovered
2025-03-26
victim
Last Discovered
2025-04-27
victim
Inactive Since
337
days
Avg Delay
3.9
days
Infostealer
41.2%
victims with domain

View Victims on World Map

View group statistics


Known Locations (4)
Favicon Title Type Available Last Visit Server Info FQDN
favicon New upgrade for Brand No 2026-03-30 09:31:26 ralordqe33mpufkpsr6zkdatktlu3t2uei4ught3sitxgtzfmqmbsuyd.onion
favicon New upgrade for Brand Yes 2026-03-30 09:34:02 NGINX nginx ralord3htj7v2dkavss2hjzviviwgsf4anfdnihn5qcjl6eb5if3cuqd.onion
favicon New upgrade for Brand Yes 2026-03-30 09:35:30 NGINX nginx ralordt7gywtkkkkq2suldao6mpibsb7cpjvdfezpzwgltyj2laiuuid.onion
favicon Nova Panel | Login No 2025-08-10 22:03:21 novazzitmugtbjwuttc5hhsemkmvwh3iyt27oeeunu5mkw62qpfeykid.onion

Target (Available)
Top 5 Activity Sectors
  • Education 2
  • Hospitality and Tourism 2
  • Manufacturing 2
  • Business Services 1
  • Technology 1
Top 5 Countries
  • BR flag Brazil 3
  • ES flag Spain 3
  • FR flag France 2
  • AR flag Argentina 2
  • SA flag Saudi Arabia 2

Heatmap (Available)

Ransom Notes (1)

Tools Used (Not Available)

No tools used available.


Vulnerabilities Exploited (0)

No vulnerabilities exploited available.


TTPs Matrix (0)

No TTPs available.


Negotiation Chats (0)

No negotiation chats available.


YARA Rules (0)

No YARA rules available.


Indicators of Compromise (IoCs) (6)
IP 1 MD5 2 SESSION 1 TOX 2
Type IOC
ip 144.172.95.78
md5 be15f62d14d1cbe2aecce8396f4c6289
md5 4566f5ba6d1a1db0dd7794ea8d791b3f
session 054f55ec93aca9bac362b9d91eff36a7ce451e7caba47c0b2e004ba429f9529c79
tox 8E9A6195A769FE7115F087C61D75CF32874C339B3AB0947D07480C9A8A12DA5009151BE6A51F
tox 0C8E5B45C57AE244E9C904C5BC74F73306937469D9CEA22541CA69AC162B8D42A20F4C0382AC

Victims (19)
Logo
Discovered: 2025-04-27
Diallog Telecommunications is a Canadian-owned and operated telecom company based in Toronto, establ…
Logo
Discovered: 2025-04-24  ·  Attack est.: 2025-04-23
The website www.helukabel.de is the official online presence of HELUKABEL GmbH, a German-based globa…
Logo
Discovered: 2025-04-23
Established in 2008 and headquartered in Riyadh, Rawafid Industrial specializes in water infrastruct…
Logo
Discovered: 2025-04-22
Agromate.com.my is the official website of Agromate Holdings Sdn Bhd, a leading Malaysian agricultur…
Logo
Discovered: 2025-04-19  ·  Attack est.: 2025-04-16
​​​​​​​​BThe website bettininformatica.com.br belongs to Bettin Soluções em Informática, a technolog…
Logo
Discovered: 2025-04-16
​​​​​​​​Bio-Clima Service Srl, an Italian company based in Bernareggio, Lombardy, specializing in th…
Logo
Discovered: 2025-04-15
ARRCO – Lights Sound Magic is a professional event technology company based in Hamar, Norway. They s…
Logo
Discovered: 2025-04-15
​​​​Newhotel Cloud is a comprehensive, cloud-based Property Management System (PMS) developed by New…
Logo
Discovered: 2025-04-14
​​​​​​​​​​​Established in 1980, the Al-Hejailan Group began as an engineering and contracting firm a…
Logo
Discovered: 2025-04-10
​​​​​​​​​​​Hasbco is a company that operates in the Grocery Retail industry. It employs 5to9 people …
Logo
Discovered: 2025-03-31  ·  Attack est.: 2025-03-22
​​Tomio Ingeniería S.A. is an Argentine company specializing in engineering and industrial services.…
Logo
Discovered: 2025-03-31  ·  Attack est.: 2025-03-25
​​​The domain ec-nantes.fr is associated with École Centrale de Nantes, which is a prestigious engin…
Logo
Discovered: 2025-03-31  ·  Attack est.: 2025-03-27
​​​​​IHARA is a Brazilian company specializing in the development and manufacturing of agricultural …
Logo
Discovered: 2025-03-31  ·  Attack est.: 2025-03-28
​​​​​​​​Pere Claver Grup is a private, non-profit organization established in 1948 in Barcelona, Spa…
Logo
Discovered: 2025-03-30
​​​​​​​​​​​Formosa Chang is a well-known Taiwanese restaurant chain, primarily famous for its tradit…
Logo
Discovered: 2025-03-28
​​​​​​​​Pere Claver Grup is a private, non-profit organization established in 1948 in Barcelona, Spa…
Logo
Discovered: 2025-03-27
​​​​​IHARA is a Brazilian company specializing in the development and manufacturing of agricultural …
Logo
Discovered: 2025-03-26  ·  Attack est.: 2025-03-22
​​Tomio Ingeniería S.A. is an Argentine company specializing in engineering and industrial services.…
Logo
Discovered: 2025-03-26  ·  Attack est.: 2025-03-25
​​​The domain ec-nantes.fr is associated with École Centrale de Nantes, which is a prestigious engin…