Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Universidad Técnica del Norte Ecuador

Group: Incransom

Discovered by ransomware.live: 2025-06-01

Estimated attack date: 2025-06-01

Country: EC

Description:

Universidad Técnica del Norte UTN, Ciencia y Técnica al Servicio del Pueblo.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 17

Compromised Users: 2477

Third Party Employee Credentials: 2183


External Attack Surface: 111


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • soporte dominiosecuador.ec
MX Records
  • utn-edu-ec.mail.protection.outlook.com.
  • fortispam.cedia.org.ec.utn.edu.ec.
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
  • c4bcd4cc7fae407c33ea490837999f
  • include:spfa.cpmails.com
  • fortinet-fortiphish-site-verification=8A9c5XCRjmKcishDEoxhVH
  • 974b9fab-8bfb-47c4-b39b-fbe5b2dc3e6d
  • adobe-idp-site-verification=b51d1b55fbdedaf59a624c92bacc1bd592d9079b13535090a2438dfdab68f68c
  • e0f4e93e-3c87-4bda-960e-35811833a9c8
Cloud / SaaS Services Detected
Adobe Fortinet

Leak Screenshot:

Leak Screenshot