Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo GMA NETWORK

Group: Devman

Discovered by ransomware.live: 2025-12-07

Estimated attack date: 2025-12-06

Country: PH

Description:

[AI generated] GMA Network is a major commercial broadcast television and radio network in the Philippines. GMA Network stands for Global Media Arts Network, and it is also referred to as Kapuso Network after the outline of the heart-shaped logo. Founded in 1950, it operates various television and radio stations in the country and internationally. The company produces a wide variety of shows, including news, public affairs, dramas, and entertainment programs.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 33

Compromised Users: 1508

Third Party Employee Credentials: 27


External Attack Surface: 108


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • relay.gmanetwork.com.
  • gmanetwork-com.mail.protection.outlook.com.
  • mrelay.gmanetwork.com.
  • mailhost.gmanetwork.com.
TXT Records
  • MS=ms11367731
  • "google-site-verification=rSSk55z5dCImXJEO4IM7a8rRAEkvxljzvqalCrqdths
  • i6KpcLekgFK14KoCG/+VTdP8Gm/uOF8g2h0/a3ZXixcpQxVPGN9mnwJxOl1FRWt6zdPJR0MW3KnxIbTaSFgmDA==
  • 6Mk2shwvCOJW0rths0lRnaWB+yYOxhKmXfySxB/SPSxuSbm5/wf1RU11ZmAVdQbZa59KHEXnQkJlGT6TsVXaIg==
  • google-site-verification=Iu5bhJEieVWJw1Spg_WjVvklKnS7bhGaukXalhoT4ic
  • adobe-idp-site-verification=73441128-45f2-4e0a-8d8b-640dbbc5f22e
  • v=spf1 ip4:203.177.46.72 ip4:121.58.236.91 ip4:203.177.46.69 include:spf.protection.outlook.com -all
  • apple-domain-verification=WFY82CyJYr2s9IJM
  • google-site-verification=rFr3BjQitmgiAUibj7g6IJw6NafvWRQruH8ZRKA4EMo
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365

Leak Screenshot:

Leak Screenshot