Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo saludsa.com.ec

Group: Akira

Discovered by ransomware.live: 2025-02-04

Estimated attack date: 2025-02-04

Country: EC

Description:

Extract from Taking stock of 2024 Part 2


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 16

Compromised Users: 106

Third Party Employee Credentials: 81


External Attack Surface: 27



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • soporte dominiosecuador.ec
MX Records
  • saludsa-com-ec.mail.protection.outlook.com.
TXT Records
  • openai-domain-verification=dv-YGCNxmQmjaGuzOBnh1W3h1ga
  • google-site-verification=ApRpN5LcfQ02QxATCqdXgfekkjSH6AkQjZm6E66F3p0
  • apple-domain-verification=kOu2bLYp8TwsPFo6
  • L3R43dPBVHUcts757fsBW8dmDhWGfHHc8gUhm91BnUU=
  • lovable_verification=aCxRxWfFesES10NJqiU0
  • stS9yxq+mO9xRZ6sEZWzhduzr961ireX45bkEQQxMi8=
  • _globalsign-domain-verification=XxiQYT5RdHiZidJGig4QSh1NPCynNxeYjzHjHaYxiI
  • DqLEfjc2K+bqNvS9aiRpLC/4rzm6efXCUASGoOiRplk=
  • MS=B3027A84F7529905F48DD524417527A23B02F2E7
  • v=spf1 ip4:8.242.162.249 ip4:8.242.162.250 ip4:35.174.145.124 ip4:200.32.69.243 ip4:200.32.72.53 ip4:192.46.5.65/29 ip4:23.253.46.228 ip4:146.148.100.193 include:spf.fromdoppler.com include:spf.protection.outlook.com include:spf.mailjet.com include:mail.z" "endesk.com include:7925267.spf05.hubspotemail.net include:_spf.alphaside.com include:_spf.email-platform.com include:spf-westus.emailsignatures365.com include:_spf.4me.com include:_spf.4me.qa include:_spf.us.xurrent.com include:_spf.us.xurrent.qa include:" "_spf.xurrent.com include:_spf.xurrent.qa -all
  • pexip-ms-tenant-domain-verification=f2947de4-932f-4924-843b-c0c90827e2ed
  • MS=ms55691013
  • parallels-domain-verification=30a29298fccd41a4b7c72706e4838c10ef2e1a7bddeb4bc69126805d7ebc679c
  • cursor-domain-verification-c8f8yg=6ARydTpDupxA0uyt7l41W9Kz5
  • sophos-domain-verification=b917cf5f577ce08be0ecf1dffd6eff0898a7a4fb59e2462797b77803dc0fab66
Cloud / SaaS Services Detected
Apple HubSpot Microsoft 365 Parallels Mailjet Sophos