Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-11-19 12:51 UTC
Est. attack date 2025-11-19
Country US

Description:

AARCO is a Mexican insurance company that offers a diverse range of products including auto, life, medical, home, and travel insur ance, tailored for both individuals and businesses. We will upload 17gb of corporate documents soon. Detailed persona l employee data (passports, driver licenses, Mexican ID's, person al phones, addresses, addresses emails, fingerprints), lots of co nfidential files, financials and accounting, contracts and agreem ents, clients' personal information, etc.

Infostealer activity detected by HudsonRock

Compromised Employees: 40

Compromised Users: 88

Third Party Employee Credentials: 41


External Attack Surface: 55


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • d267789a.ess.barracudanetworks.com. Barracuda
  • d267789b.ess.barracudanetworks.com. Barracuda
TXT Records
  • google-site-verification=odvMhcpBwWXqgwZimtX5LJa6K35uabp3xrQsB_kTJAE
  • google-site-verification=xn4Y6qB611ufYf0PPLpNoLaRAfsdze8O9J_WoyR3g2I
  • v=spf1 mx a:mail.aarco.com.mx ip4:70.38.87.200 ip4:70.38.87.201 ip4:70.38.87.202 ip4:70.38.87.203 ip4:167.250.76.11 include:spf.protection.outlook.com include:servers.mcsv.net include:protection.outlook.com include:_spf.embluemail.com include:_spf.xinet." "com.mx -all
  • google-site-verification=FQXBreo8dGGZQA6oEwj-UcLFQaHe-PeUb1U3ipgomtw
  • google-site-verification=mZnAsFCNgCivzw02H5JtVmQkESGD81zeBcqZUiza0rI
Cloud / SaaS Services Detected
Mailchimp