Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ascoma Group

Group: akira

Discovered by ransomware.live: 2025-03-13

Estimated attack date: 2025-03-12

Country: MC

Description:

ASCOMA has two cross-functional divisions: ASCOMA International, a coordination center for international operations, and ASCOMA He alth/PACTILIS, the Group’s competence center for health insurance and healthcare cost management, and more broadly for personal in surance. We are ready to upload more than 12 GB of essential corporate doc uments such as: contact numbers and e-mail addresses of employees and customers, internal correspondences, passports and other emp loyee and customer documents, etc


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 75

Third Party Employee Credentials: 0


External Attack Surface: 13


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namebay.com
MX Records
  • ascoma-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 mx a ip4:94.23.123.135 ip4:196.207.243.130 ip4:196.207.243.131 ip4:88.209.85.161 ip4:41.242.33.153 ip4:88.209.85.163 ip4:178.33.105.119 ip4:86.242.6.55 ip4:41.202.216.14 ip4:5.196.90.142 ip4:149.202.24.154 ip4:92.154.100.248 ip4:41.202.216.14 " "ip4:82.113.12.194 ip4:88.209.85.160 ip4:195.78.14.52 ip4:90.63.245.159 include:spf.protection.outlook.com include:spf.cloud.vadesecure.com include:spf4.sbr-master.net include:spf.stratis.pro -all
  • ffv1lfp30ecdhebpb28m79qo58
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.