Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Agriloja.pt

Group: Everest

Discovered by ransomware.live: 2023-08-14

Estimated attack date: 2023-08-14

Country: PT

Description:

464574 internal documents and files stolen.1.2 TBSQL DBs, Email Archives, Personal information,employee data,,IDs,various company documents… To restore damaged system and prevent data from publication company’s representative should contact us in next 72 hrs. Full filetree can be provided as a proof.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • emanuel.santos@agris.pt
  • paulo.santos@agris.pt
MX Records
  • mail.agriloja.pt.
TXT Records
  • d365mktkey=oawd2rYwscFKksq6guEW20CQNlaBKybWny7fc9ijBxAx
  • google-site-verification=uH8lDNIjGij8emqFk9pn-zmvHG7m3IKygkk3_uiBSTA
  • v=spf1 ip4:94.46.173.198 ip4:193.126.27.241 include:spf.protection.outlook.com include:8646579.spf06.hubspotemail.net include:_spf.cleanmx.pt -all
Cloud / SaaS Services Detected
HubSpot

Leak Screenshot:

Leak Screenshot