Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo KIU System Solutions

Group: apos

Discovered by ransomware.live: 2025-03-17

Estimated attack date: 2025-03-17

Country: AR

Description:

🌐 kiusys.com💲 23400000📍 Paraguay


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 75

Third Party Employee Credentials: 3


External Attack Surface: 34


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • compliance domain-inc.net
MX Records
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
TXT Records
  • apple-domain-verification=p2E8vZUT5DcRdi1r
  • atlassian-domain-verification=vkMvTvfapnNF8pbw9zGabUpcg64Ev83FYpXCR6oUobJtaUNNBee5lBdf3Ldcgcvc" "pfh1zhfnjr1dmwgwc45lnwgyk9x94gv0" "w7sf0fr5802m9c0y36zzrl0m5f4ch3mw
  • cursor-domain-verification-3ycskg=hfKsx56j2hUVN3vKnM4Fs0w0x
  • facebook-domain-verification=oofh63ulog7gwv4pdwb5irqetjykxe
  • google-site-verification=MCjo9VWtUPZb8b4DE95Lqmst6BKgo71wlzUK554edwo
  • miro-verification=4113fb726499b337078dbeb15fac6004829d0b51
  • v=spf1 ip4:18.214.133.205/32 ip4:18.205.90.7/32 ip4:34.237.236.173/32 ip4:52.67.210.51/32 ip4:52.7.130.235/32 ip4:52.67.222.173/32 ip4:35.165.164.212/32 ip4:100.27.115.44/32 include:_spf.google.com include:amazonses.com -all
  • 1password-site-verification=QGYFFMR6PNBT3BMXM7GM6QGBLE
Cloud / SaaS Services Detected
Apple Atlassian Amazon SES/WorkMail Miro

Leak Screenshot:

Leak Screenshot