Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

FANASA.COM UPDATE-FULL DATA DUMP

FANASA.COM

Discovered 2026-05-11 22:25 UTC
Est. attack date 2026-05-11
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

Personally Identifiable Information (PII), ​Electronic Fiscal Documents (CFDI/XML), ​Financial Transaction Records, ​Commercial Invoices & Billing Data, ​Taxpayer Identification Numbers (RFC), ​Client & Vendor Database/​Internal Corporate Documentation

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 279

Third Party Employee Credentials: 12


External Attack Surface: 16


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabusetucows.com
MX Records
  • fanasa-com.mail.eo.outlook.com. Microsoft 365
TXT Records
  • 187.157.255.45
  • 127.0.0.1#53
  • 76QMEJN2SYSV2A9QBF6HRALQMPZK1T7VIAZMPE45
  • nGp5QvUU6xtXZFBb3EZd96ixeNWBfBrnaQrTwRDQ7zk=
  • bql62e68b64kos0srght2q0n68
  • 4kb98irph063j1jte3tkrf7gai
  • v=spf1 include:spf.protection.outlook.com include:zcsend.net include:spfa.cpmails.com ip4:3.214.204.181 ip4:35.174.145.124 ip4:44.211.178.96/28 ip4:44.211.178.112/28 ip4:3.101.216.128/28 -all
  • apple-domain-verification=fSrgftgKdBCvZhXT
  • canva-site-verification=fqZ_g1zbeVcYyCejcz6_3A
  • 8fie0kpe89325r56ohho3m6h95
Cloud / SaaS Services Detected
Apple