Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo midwayimporting.com

Group: cactus

Discovered by ransomware.live: 2025-02-18

Estimated attack date: 2025-01-16

Country: US

Description:

<p>Drug Stores &amp; Pharmacies.<br><br>“Midway Importing is the leading Hispanic health and beauty care distributor in the United States because we are dedicated towards providing the best mix of Hispanic brands, at the right price. We have achieved unmatched success for the past 25 years by complementing our brands with excellent merchandising services, and a comprehensive marketing program. Here at Midway we are truly a family, committed to improving the lives of the US Hispanic consumer.”<br><br>Website: <a href="https://www.midwayimporting.com/">https://www.midwayimporting.com/</a><br><br>Revenue : $43.7M<br><br>Address: 1807 Brittmoore Rd, Houston, Texas, 77043, United States<br><br>Phone Number: &nbsp;(713) 802-9363<br><br><mark class="marker-yellow"><strong>Download link #1:</strong></mark> &nbsp;<a href="https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/MIDWAY/PROOF/">https://6wuivqgrv2g7brcwhjw5co3vligiqowpumzkcyebku7i2busrvlxnzid.onion/MIDWAY/PROOF/</a><br><br><mark class="marker-yellow"><strong>Mirror:</strong></mark> <a href="https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/MIDWAY/PROOF/">https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/MIDWAY/PROOF/</a><br><br><mark class="marker-yellow"><strong>DATA DESCRIPTIONS:</strong></mark> Personal identifiable information, employees and executives personal folders\docs, corporate OneDrives, database backups, confidential agreements, financial docs, corporate correspondence, HR dept data, etc.</p><p><img src="/uploads/Cell_Phone_list_9b6388ec95.png" alt="Cell Phone list.png"><img src="/uploads/Passport_and_DL_CH_cd35225ac3.png" alt="Passport &amp; DL - CH.png"><img src="/uploads/2024_01_Herrera_Dayan_ed9da6c162.png" alt="2024.01 - Herrera, Dayan.png"><img src="/uploads/Everest_Cyber_Application_v_Signed_27a598e47d.png" alt="Everest Cyber Application - vSigned.png"><img src="/uploads/Midway_Financial_Package_YTD_Oct_2024_8a46babaad.png" alt="Midway Financial Package - YTD Oct 2024.png"></p>



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • midwayimporting-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com ip4:208.40.133.57 ~all
  • google-site-verification=nSizEr68_zVTHDxhpCc2-kG4BgLQjxJAcHnI31wgRK0
  • apple-domain-verification=MoC3RbrJq7VVDpkS
Cloud / SaaS Services Detected
Apple

Leak Screenshot:

Leak Screenshot