Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo eucatex.com.br

Group: ransomhub

Discovered by ransomware.live: 2024-05-14

Estimated attack date: 2024-05-14

Country: BR

Description:

Visits: 43 Data Size: 150 GB Published: TrueDownload: http://crylcxzmkllsvq3qgh6gmeg3abqcyliepqza2r57o43gsfwomibq2cyd.onion/


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 15

Third Party Employee Credentials: 8


External Attack Surface: 13



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • mailstream-east.mxrecord.io.
  • mailstream-central.mxrecord.mx.
  • mailstream-eu1.mxrecord.io.
TXT Records
  • google-site-verification=akF5h9o0QW3kymRpi_nwAOB2ZA5b79QlQ-5JXWzDdGQ
  • MS=6ACF7825FE8DB84B049E42C688E13F8DEDB86497
  • MS=ms43530147
  • gkj5dfu0jrr0cbhb1ukvqb1hfo
  • d8khr3e003vcb3ejp7qgvbum8b
  • q3ptdsej444qjaq8teq7esnr0b
  • v=spf1 include:spf.protection.outlook.com include:_spf.rdstation.com.br include:sendgrid.net -all
Cloud / SaaS Services Detected
Microsoft 365 SendGrid

Leak Screenshot:

Leak Screenshot