Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Repremundo.com.co

Group: Imncrew

Discovered by ransomware.live: 2025-06-14

Estimated attack date: 2025-06-14

Country: CO

Description:

RepreMundo is a company that operates in the Management Consulting industry. It employs 500to999 people and has 10Mto25M of revenue. The company is headquartered in Bogota, Bogota D.C.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 51

Third Party Employee Credentials: 43


External Attack Surface: 48


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • admin hello.co
MX Records
  • repremundo-com-co.mail.protection.outlook.com.
TXT Records
  • v=spf1 +a:ocapp.repremundo.com.co ip4:45.169.253.100 include:spf.mandrillapp.com include:servers.mcsv.net include:6919278.spf06.hubspotemail.net include:spf.protection.outlook.com ~all
  • r36hbkju325q9a61jp1vdkhves
  • MS=ms68943950
  • MS=F8FDC83B95DF324F8FC7AAFEDBF9CC28D090858D
  • mandrill_verify.YfRnnfJxRFsqf6_ZlnwHSQ
Cloud / SaaS Services Detected
HubSpot Mailchimp Microsoft 365 Mandrill

Leak Screenshot:

Leak Screenshot