Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo BDO Perú

Group: incransom

Discovered by ransomware.live: 2025-08-29

Estimated attack date: 2025-08-29

Country: PE

Description:

We have access to the personal data of your department heads and their electronic signatures, as well as information and signatures of your clients, including accounting data and audit-related materials. In addition, we have obtained information on more than 500 companies — your partners and clients. For an organization that considers itself one of the world leaders, such a leak indicates extremely unsatisfactory handling of confidential information and a low level of information security.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • bdo-com-pe.mail.eo.outlook.com.
TXT Records
  • b2zy4bn2bm5k05jgjd7mmvzd835fwj5r
  • MS=ms27457170
  • MS=ms27210664
  • _g5s54rmiatxebr0jcoe71i0565u937z
  • zzc0zw8qc3jwqbqbdgkf61m64l1trh2k
  • brevo-code:20034a0291f92c5b31a384700334ec79
  • v=spf1 mx a ip4:190.8.129.72/29 ip4:190.187.149.128/28 ip4:190.8.140.248/29 ip4:190.187.249.248/30 ip4:190.187.249.148/30 ip4:3.66.26.250 ip4:144.217.103.3 ip4:158.69.18.248 ip4:190.187.250.224/29 include:spf.protection.outlook.com include:_spf.embluemail" ".com -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot