Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Adelante Soluciones Financieras (Addi.com)

Addi.com

Discovered 2026-05-05 06:26 UTC
Est. attack date 2026-05-05
Country CO

Description:

Over 16M unique persons records containing significant PII, financial/transactions (credit cards), KYC and data from TransUnion and Experian (background checks) . The company failed to reach an agreement with us despite our incredible patience, all the chances and offers we made. They don't care. | Size: 518GB+ (compressed) | Updated: 5 May 2026 | SHA256: 520d50dc384fc474e419fdd19cb3517ed6ce778a187ae7d6f44b93ccef5687db

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 6139

Third Party Employee Credentials: 7


External Attack Surface: 28


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • 71392a564805ddb69c53f52bcaf16eb84f12869561a782d38a11f78df080c06aaddi.com.whoisproxy.org
  • 71392a564805ddb69c53f52bcaf16eb8bd026adb5bfa22284d8405f832a2b7c7addi.com.whoisproxy.org
  • trustandsafetysupport.aws.com
  • 71392a564805ddb69c53f52bcaf16eb8b1e00083c8a98f9b2d2d4265bcf0e010addi.com.whoisproxy.org
  • 71392a564805ddb69c53f52bcaf16eb8fbe38de1df4498880a269238bde98235addi.com.whoisproxy.org
MX Records
  • aspmx.l.google.com. Google Workspace
  • aspmx2.googlemail.com. Google Workspace
  • aspmx3.googlemail.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
TXT Records
  • google-site-verification=avNcFMWzUeKcf0Axy0sPDx6JnfEtT1qhxsLpCL6Z3Cc
  • v=spf1 a mx include:_spf.salesforce.com include:u826348.wl.sendgrid.net include:_spf.google.com ip4:149.72.75.17 ip4:149.72.87.245 ip4:149.72.202.94 include:spf.protection.outlook.com -all
  • _9tstid3lal3jq68j85fbasmnmssth44
Cloud / SaaS Services Detected
Salesforce SendGrid