Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo MUNDI.COM

Group: clop

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: BR

Description:

[AI generated] MUNDI.COM is a global tech company specializing in travel services. They provide an expansive online platform that assists users in finding, comparing and booking various travel services including flights, hotels, and packages. Operating internationally, they offer services from numerous providers, striving to find the best deals and options to accommodate their customer's unique travel needs. They have a customer-centric approach to help travelers save time and money.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabuse tucows.com
  • tucows domains.siteground.com
MX Records
  • mx20.antispam.mailspamprotection.com.
  • mx30.antispam.mailspamprotection.com.
  • mx10.antispam.mailspamprotection.com.
TXT Records
  • v=spf1 ip4:34.174.118.44 +a +mx +ip4:77.104.145.67 +ip4:34.174.49.195 +ip4:77.104.154.244 +include:userinclude.dme3ds1.com include:mundi.com.spf.auto.dnssmarthost.net ~all
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCkEUp3Evn0gczbCgvt+g8EKSI0Ls3ccIx/XZro62Pvlj4A1XPhfHrOo0xmklZNZ+cA7VLBxRX6k9OzYMdqKxlV0h4mkmC6johKIQc2hHzBQ5DA3F5IsEP2sk4D2kJR0VlzUxghxKL4NUEE1HtdPvs/DHSSiOhM1xu3lStxnpyyXQIDAQAB
  • _globalsign-domain-verification=z8gZUZ5pJ5r_iiKld_aApfl9lIh-vYPCAoHMmnp4Fd
  • google-site-verification=_3hqB3NTNsTeVtl3q6HRhplH2D-9rA3RlJJah2YbaHY
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.