Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Transpedrosa

Group: Direwolf

Discovered by ransomware.live: 2025-11-26

Estimated attack date: 2025-11-21

Country: BR

Data exfiltrated: 335GB

Description:

[AI generated] Transpedrosa is a Brazilian company that specializes in the transportation of liquid and gas products. Established in 1969, they handle an array of materials like chemical, petrochemical, and aviation products. They continue to expand their services beyond their initial local focus, becoming a crucial player in the road transport logistic sector within Brazil.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 10

Compromised Users: 4

Third Party Employee Credentials: 3


External Attack Surface: 16


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • informatica transpedrosa.com.br
  • cert cert.br
  • mail-abuse cert.br
MX Records
  • mail.transpedrosa.com.br.
TXT Records
  • MS=ms52235073
  • v=spf1 ip4:198.72.126.2 ip4:198.72.126.22 ip4:198.72.126.23 ip4:198.72.126.24 ip4:198.72.126.25 ip4:198.72.126.26 ip4:67.205.102.116 ip4:174.142.4.24/30 ip4:198.50.119.219 ip4:198.50.119.244 ip4:174.142.7.156/30 ip4:198.50.119.219/26 ip4:198.50.119.244/26" " ip4:184.107.3.135 ip4:184.107.6.154 ~all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot