Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo groupecho.com

Group: Lynx

Discovered by ransomware.live: 2026-01-05

Estimated attack date: 2026-01-05

Country: CA

Description:

Groupecho Canada offers a wide range of services including credit reports, debt recovery, and client account management tailored to various businesses such as startups, SMEs, and larger enterprises in financial distress. Their solutions aim to help clients reduce risks, improve liquidity, and increase profitability. Target clients include autonomous workers, very small businesses, and medium to large enterprises across industries like construction, manufacturing, and financial services. Through training sessions and legal information resources, Groupecho supports businesses in making informed credit management decisions


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 5

Third Party Employee Credentials: 0


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • smtp.groupecho.com.
  • mail.groupecho.com.
TXT Records
  • MS=ms50779408
  • v=spf1 mx ip4:207.107.1.8 ip4:162.212.232.138 mx:groupecho.com -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot