Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo ravand.com

Group: Devman

Discovered by ransomware.live: 2025-12-02

Estimated attack date: 2025-12-02

Country: CA

Description:

Ransom: 75k 50gb



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse registrar.eu
MX Records
  • ml2.ravand.com.
TXT Records
  • v=spf1 mx ip4:198.55.55.0/24 ip4:198.27.76.112 ip4:216.138.204.116 ip4:23.159.16.66
  • MS=21A5B4628531B552D1D7EBDB6651562EFBE4ECA3
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot