Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.marvimundo.com

Group: incransom

Discovered by ransomware.live: 2025-07-15

Estimated attack date: 2025-05-08

Country: ES

Description:

We downloaded the date of this company back in early May. Enjoy your viewing


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 457

Third Party Employee Credentials: 1


External Attack Surface: 25


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse nicline.com
MX Records
  • marvimundo-com.mail.protection.outlook.com.
TXT Records
  • apple-domain-verification=qIeyqNBzwG6w4ltWQWcEn52coQlP6xn7ZDfwDBktw30
  • facebook-domain-verification=rsu1k7scvuvdtwrj9vjrldztctyp39
  • google-site-verification=B1lsWJC4uyFnpeq3en2YWUZQvm5nfK0igChCC0_Dz1s
  • google-site-verification=Xy5xRLW6-Don-xnuiXC0hZHgRmklw2VKiiYy-ex9nv0
  • google-site-verification=dcgYm9B1fBflV9z_6yW7K-0QHh5y-7yJwvceTp3kBJ4
  • v=spf1 ip4:45.150.218.167/32 ip4:188.84.173.164/32 ip4:188.84.173.165/32 ip4:35.187.126.223/32 ip4:82.223.190.0/24 ip4:213.97.91.236/32 ip4:185.183.223.81/32 include:spf.protection.outlook.com include:spf.acumbamail.com include:_spf.serviciodecorreo.es -" "all
  • Acumbamail-domain-verification: 65d35e2c-cadd-11e7-8415-0050569a455d
  • MS=ms67578817
  • MS=ms78493831
  • apple-domain-verification=VQJH8mPijWp16Zwq
Cloud / SaaS Services Detected
Apple Microsoft 365

Leak Screenshot:

Leak Screenshot