Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ValeCard

Group: medusa

Discovered by ransomware.live: 2024-07-23

Estimated attack date: 2024-07-15

Country: BR

Description:

ValeCard (founded in 1995) - provides complex and integrated solutions for managing benefits, finances and frosts. ValeCard corporate office is located in 904 R Machado De Assis, Uberlandia, Minas Gerais, 38400-112, Brazil and has 399 employees. The total amount of data leakage is 107.6 GB


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 28

Compromised Users: 2

Third Party Employee Credentials: 17


External Attack Surface: 119



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • valecard-com-br.mail.protection.outlook.com.
TXT Records
  • nw16fbwtjptdp0p89z5dk6lvn5d6zn1y
  • v=spf1 ip4:150.230.69.119 include:spf.protection.outlook.com include:rp.oracleemaildelivery.com ~all
  • MS=ms25513215
  • MS=ms69519397
  • _gpvyr5it078eu7y8ml6lfbkpbboir9v
  • atlassian-domain-verification=LfG9ylUiyvDjcZ/KcCILx5Rd5Y2jEJltHnCzb2woHvG3IS7VeHj0w6ctP0rP1IKt
  • dymnt4ynpskc1gy1ss4133vr93nsdpcq
  • facebook-domain-verification=2mqwl0cug53bo2tyqr7un06pssnjjv
  • google-site-verification=0oWWcS9rUY7ik07-N0awoIk7pF5GxScJTfMMpbPQfRw
  • google-site-verification=URK8u0bEjQTSoqo8cxdt1woR7ovZk0HIVL8E4SHeFkc
Cloud / SaaS Services Detected
Atlassian Microsoft 365

Leak Screenshot:

Leak Screenshot