Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group: Payoutsking

Discovered by ransomware.live: 2025-07-07

Estimated attack date: 2025-05-12

Country: FR

Data exfiltrated: 858GB

Description:

[AI generated] EvoluPharm is a leading player in the pharmaceutical sector in France. The company offers an innovative model providing solutions and services for pharmacists, including a wide range of generic and specialty pharmaceuticals. They aim to optimize and digitize pharmacies through various management tools, marketing solutions and training. They also emphasize environmentally friendly practices.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 6

Third Party Employee Credentials: 0


External Attack Surface: 7


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar.domaine@orange.com
  • cloud.store@orange-business.com
  • M.PETRIS@EVOLUPHARM.FR
  • A.DARBAS@EVOLUPHARM.FR
  • JF.GIBERT@EVOLUPHARM.FR
  • C.CORNU@evolupharm.fr
MX Records
  • mercexch.evolupharm.fr.
TXT Records
  • linkedin-site-verification=5facbc25-ed06-474e-a237-044092b034c4
  • brevo-code:236c7bafee1fffc1fbb3827a3f761c90
  • v=spf1 a mx ip4:46.105.51.195 ip4:83.206.102.25 ip4:85.69.172.4 ip4:85.69.172.7 include:sfrbusinessteam.fr ~all
  • google-site-verification=kcjquMzlEhWz8GPi-Mf4Ifz_QoVoi87nziXLry7KoZk
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot