Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo José Guma S.A.

Group: Dragonforce

Discovered by ransomware.live: 2025-11-05

Estimated attack date: 2025-10-16

Country: ES

Description:

José Guma S.A. Occupation: production of household chemicals and hygiene products (soap, cleaning products) + contract manufacturing for third-party brands. Location: Colonia Caroya, Cordoba Province, Argentina. Legal address / factory / site: Lot 1, Malabrigo (Lot 1, Barrio Malabrigo, Cordoba) — part of the company's infrastructure. Structure: one of the heads/President is Jorge Alfredo Gleria. Membership in sustainable initiatives: for example, they are a member of the RSPO (Organization for Sustainable Palm Oil Production).


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 35

Third Party Employee Credentials: 8


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse acens.net
MX Records
  • joseguma-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot