Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Amarilla Gas

Group: play

Discovered by ransomware.live: 2024-06-13

Estimated attack date: 2024-05-14

Country: AR

Description:

Argentina


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 144

Third Party Employee Credentials: 3


External Attack Surface: 2



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • amarillagas-com.mail.protection.outlook.com.
TXT Records
  • google-site-verification=hDNH_TrLE4PCSX_O1Ecxg-vEIroApM0EG5rRZ3VMSUM
  • google-site-verification=pabIyEivMuTW0Djxw5YFrp6OeWk5m8irgh5Nf1BB1ro
  • v=spf1 a mx ip4:190.183.61.102 include:spf.protection.outlook.com include:spf.mandrillapp.com include:spf.hostmar.com ~all
  • google-site-verification=5aJanltBt7cY8Uk-MGv5bHZgXqCZaaZj3VOvrdbdl2A
Cloud / SaaS Services Detected
Mandrill

Leak Screenshot:

Leak Screenshot