Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Acuna Fombona (AFOM)

Group: Spacebears

Discovered by ransomware.live: 2025-10-08

Estimated attack date: 2025-10-02

Country: ES

Description:

Acuña y Fombona is an Asturian company with 50 years of experience in the distribution of surgical products in Spain and Portugal, offering top-level international brands for different medical specialties: spinal surgery, traumatology,  neurosurgery, thoracic surgery, maxillofacial surgery, ophthalmology, plastic surgery, ENT.They are clients of Gesimde Asociados S.L. The leak was made possible by this company.DatabasePersonal information of employees and clientsFinancial documents https://www.acuna-fombona.com/


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 0

Third Party Employee Credentials: 3


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse gkg.net
  • 7934a6101ac1ebaaccd90b9a0ac91ba0ab6af1b1 privatedomain.gkg.net
MX Records
  • acunafombona-com01c.mail.protection.outlook.com.
TXT Records
  • google-site-verification=gJ2m5jrZJXMpQ2JfOiOi1LM7HeXW_vFO0cjIjDZH_fw
  • mscid=xe0X10//Z6dnYzG/r28BXQE0KO/rwOY4Yo0NDXJIKzyqIFBiM+vd8vGmE5ro8PTF3WdFOWmDAz1zoc1LwF/M0w==
  • v=spf1 include:spf.protection.outlook.com -all
  • MS=ms69788790
  • logmein-verification-code=9075764e-4be8-4185-ab54-d5f6d0a70b71
Cloud / SaaS Services Detected
Microsoft 365 LogMeIn

Leak Screenshot:

Leak Screenshot