Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group 8base
Discovered 2023-05-23
Est. attack date 2023-05-09
Country MX
City Chetumal

Description:

The Integral Port Administration of Quintana Roo S.A. of C.V. was constituted on March 17, 1994 before Notary No. 8 Lic. Fernando A. Cuevas Pérez, as a company with majority state participation, integrating with a majority partner that is the Government of the Free and Sovereign State of Quintana Roo, as well as with minority partners that are, the Municipalities of Othón P. Blanco, Cozumel, Isla Mujeres, Benito Juárez and Solidaridad, of the State of Quintana Roo.https://www.apiqroo.com.mx/rh@apiqroo.com.mx

Infostealer activity detected by HudsonRock

Compromised Employees: 14

Compromised Users: 1

Third Party Employee Credentials: 14


External Attack Surface: 30


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • v=spf1 include:_spf.google.com ~all
  • MS=ms10922754
  • google-site-verification=KOcaWdh2YDLRwqow35oJCPdaNpQYPUuBhsQQ-yNxVSk
  • MS=155A522E8196B609938F59BB0E341381D48BBBF9
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot