Buy Me a Coffee

This space is available for sponsoring Ransomware.live Contact us to sponsor this space

Logo ibram.org.br

Group: Funksec

Discovered by ransomware.live: 2024-12-17

Estimated attack date: 2024-12-17

Country: BR

Description:

[AI generated] Ibram.org.br is the online presence of the Brazilian Mining Institute (Instituto Brasileiro de Mineração), an organization dedicated to representing and promoting the mining industry in Brazil. It focuses on fostering sustainable mining practices, providing industry data, supporting technological advancement, and advocating for regulatory policies that benefit the sector.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 1


External Attack Surface: 2



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • mxa.mailgun.org.
  • mxb.mailgun.org.
  • alt1.aspmx.l.google.com.
TXT Records
  • amazonses:Q2l+sBUvAbr0GAqYnQizVS5wLgxrZAZULY/iXwUVDrg=
  • emktownership=t9KWV.0uQhr9M
  • google-site-verification=Ep210y3ogj2y0xuj-qHMozgYnhW05nHCvqfsEBLcrcI
  • google-site-verification=Ku6lzR1XZ5BzwSNF69e21CWp6KtUmMYTloDfU7zKHto
  • google-site-verification=oNwTDnnx7MuOTFwp7pIFfAvcJC5oawl95osjRHkvRIE
  • v=spf1 include:_spf.google.com include:spf.protection.outlook.com ~all
  • MS=AA4E6597B51B5043D5C8FF24A6A75A5FB435DFBA
  • YmQ2ZDNjNDU4MzdmMmM5N2RjYzM3N2Y2YTUzMzExZDQ=
Cloud / SaaS Services Detected
Amazon SES/WorkMail Mailgun

Leak Screenshot:

Leak Screenshot