Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo uniplaclages.edu.br

Group: Lockbit5

Discovered by ransomware.live: 2025-12-22

Estimated attack date: 2025-12-20

Country: BR

Description:

UNIPLAC offers various educational services including student and employee portals, distance learnin...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 534

Third Party Employee Credentials: 196


External Attack Surface: 97


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • niu uniplaclages.edu.br
  • cert cert.br
  • mail-abuse cert.br
MX Records
  • mx.jk.locaweb.com.br.
  • ASPMX.L.GOOGLE.COM.
  • mx.b.locaweb.com.br.
  • mx.core.locaweb.com.br.
  • ALT4.ASPMX.L.GOOGLE.COM.
  • ALT2.ASPMX.L.GOOGLE.COM.
  • mx.a.locaweb.com.br.
  • ALT3.ASPMX.L.GOOGLE.COM.
  • ALT1.ASPMX.L.GOOGLE.COM.
TXT Records
  • google-site-verification=9cFZrOpGxvPLVTCk6f8uzueRmCyLBsksym98y1lXZXw
  • google-site-verification=ufJ4YBXXeZ_Y_1yJveKBUO5xcB7ewKJd79PGpGyBzKA
  • MS=2D8E8FF45EABC737F9883FDDD799108811874CE1
  • google-site-verification=sIU4pTXEjN_ouGB6C_oa-wIp-N5u-u21zLQ_ZKKPn9g
  • v=spf1 include:_spf.google.com include:_spf.rdstation.com.br include:sendgrid.net ~all
Cloud / SaaS Services Detected
SendGrid

Leak Screenshot:

Leak Screenshot