Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo appweb.usinacoruripe.com.br

Group: ransomhub

Discovered by ransomware.live: 2024-09-28

Estimated attack date: 2024-09-24

Country: BR

Description:

The company "appweb.usinacoruripe.com.br" is associated with Usina Coruripe, a major player in the Brazilian sugar and ethanol industry. Usina Coruripe specializes in the cultivation, processing, and marketing of sugarcane products, including sugar, ethanol, and bioenergy. The company is known for its commitment to sustainability and innovation in the agribusiness sector.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 417

Third Party Employee Credentials: 20


External Attack Surface: 22



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • usinacoruripe.in.tmes.trendmicro.com.
TXT Records
  • d4sign-domain-verification=ff2d7882-a279-4d9e-ae49-c188f8f5422b
  • trend-micro-v1-domain-verification.124ff8f6bec3b9783f885a359db5a5d3=b3f04194-9592-49f3-b758-550f232d8d84
  • c3a57cc10e8c4c9bcc404523d777a3d68b81e0be36202774cb
  • 8555e7da23a3257b78df39df403c1f6f9b4c559f8fe4c1b7ae
  • MS=ms93573364
  • uuM5yKjVMfOOKc18mKnkSc1F2TsnKIB6lBgpdGMN6mapdBXJIf4VhOkJH7+vgTXZ1JS03V2UxShiSam7vbmLpg==
  • v=spf1 ip4:104.209.135.142 ip4:144.22.255.51 include:spf.protection.outlook.com include:mxsspf.sendpulse.com ptr:mail.sharepointonline.com include:zoho.com include:spf1.zoho.com include:spf.tmes.trendmicro.com include:transmail.net include:zcsend.net -all
  • tmes=e520f98ee301103362a8344b1c8a8003
Cloud / SaaS Services Detected
Microsoft 365 Zoho Mail

Leak Screenshot:

Leak Screenshot