Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Majinahanashi

New Group | Active

This is an emerging group, so claims should be treated with caution until independently verified.
None

Victims
22
 
First Victim
2026-07-04
(est. attack date)
Discovery Date
2026-08-12
 
Last Seen
2026-09-01
 
Inactive Since
2
days
Avg Delay
23.5
days
Infostealer
57.1%
victims with domain
Countries
14
hit
Uptime
82.1% avg (30d)
View Victims on World Map View Group Statistics
Attack Velocity — Last 12 months (based on attack estimated date if available)
-92% vs last month

Known Locations (4)
Favicon Title Type Available Last Visit Server Info FQDN Status
favicon Blog — 魔人 Yes 2026-09-03T07:42:21 NGINX nginx lthicpjqc7gkn5eq3epxndc2uig3yngvcbdya4u3m3byjod5km4yuwqd.onion
favicon No 2026-09-03T07:42:44 NGINX nginx cc666mzpsjhn3yi6t7hqkwi5thjeh7prxg3mndpceb7xtchsbsmct3ad.onion
favicon No 2026-09-03T07:41:54 rz45lyi2ehl2e2xs3ivwbah65tumebztmypmtqpc6cigc3wadwjicgad.onion
favicon No 2026-09-03T07:42:38 NGINX nginx rtypxnzdjus6slwtzhmnh7dnc35q3sdzbiuhaammefl5u2ce2lxkg5yd.onion

Target
Top 5 Activity Sectors
  • Technology 3
  • Other 3
  • Hospitality 3
  • Retail & E-Commerce 3
  • Manufacturing 2
Top 5 Countries
  • ES flag Spain 2
  • CO flag Colombia 2
  • IT flag Italy 2
  • US flag United States 2
  • MY flag Malaysia 1

Heatmap

Indicators of Compromise (IoCs) (18)
Email 2 Hash MD5 5 Hash SHA1 5 Hash SHA256 5 Tox 1
Type IOC
Email thedoctorcame@protonmail.com
Email we_will_treat@proton.me
Hash MD5 20294fe9ec6b7763a8fd58f23be53be7
Hash MD5 7ee443b0530bb9fe4c36c0faafdeb6bc
Hash MD5 914ff51fb60247cf13897b1bc950a190
Hash MD5 ac9d11435d475086b80ebe7d6943fc83
Hash MD5 ede70699452c4bf8ec5adef4aff6ba44
Hash SHA1 0d58c760097892590ff93b819f6b26925a6fbe2c
Hash SHA1 6f9e1371427be15a840c2de5eb1719a466af2016
Hash SHA1 92a7c4930d4e942b5a18511e1303856d65c49f0f
Hash SHA1 aa7887e95316dc7ef01367c7a7193f5146431623
Hash SHA1 d213bccd00f98d8af608186035bc8bf814e13364
Hash SHA256 98565754be5c8c6bf8e6bfd9c27405849dd055ac3b35e0a7076be4a649fc8bf1
Hash SHA256 bd91d786841f5259430c1c90b454d9f8bf510186fe4d32a0998bd9b5a7916467
Hash SHA256 e43f8514cc53f6825b3552728222172966c7b8831a762037b8b3d83d8b13552f
Hash SHA256 e6ec7749e3d0f750fa53b5a7619d1e5af57673d236338b3a020d0f534ec5c15d
Hash SHA256 f414df0541a9a27ff47a834960e751dd1b08c3bfe1bba2409f6a1a953ca675d1
Tox 59DE03AE55C400954D0973FFB90C251A7FDCEB3079A42DF6A6DB93E7D1915F5C47B238A2A99E

Victims (22)
Logo
Discovered: 2026-09-01 (Yesterday)
PUBLICATION SCHEDULED. [LEAK / 6341 FILES]…
Logo
Discovered: 2026-08-29 (4d ago)
PUBLICATION SCHEDULED. [LEAK / 6341 FILES]…
Logo
Discovered: 2026-08-29 (4d ago)
PUBLICATION SCHEDULED. [LEAK / 6341 FILES]…
Logo
Discovered: 2026-08-25 (8d ago)
PUBLICATION SCHEDULED. [LEAK / 1844 FILES]…
Logo
Discovered: 2026-08-23 (11d ago)
PUBLICATION SCHEDULED. [LEAK / 1844 FILES]…
Logo
Discovered: 2026-08-20 (13d ago)
PUBLICATION SCHEDULED. [LEAK / 5045 FILES]…
Logo
Discovered: 2026-08-20 (13d ago)
PUBLICATION SCHEDULED. [LEAK / 8080 FILES]…
Logo
Discovered: 2026-08-16 (17d ago)  ·  Attack est.: 2026-07-04
TARGET: piopio.com.co REVENUE: $5m EMPLOYEES: 33 staff [LEAK / 6306 FILES]…
Logo
Discovered: 2026-08-16 (17d ago)  ·  Attack est.: 2026-07-09
TARGET: bonjourgroup.net, bonjourretail.com REVENUE: $57.8 Million EMPLOYEES: 501-1,000 employees [L…
Logo
Discovered: 2026-08-16 (17d ago)  ·  Attack est.: 2026-07-09
TARGET: ktr.co.th REVENUE: ~$55M USD EMPLOYEES: ~ [LEAK / 1853 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-07-06
TARGET: Son-Video.com REVENUE: $54M EMPLOYEES: ~51-200 employees [LEAK / 10382 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-07-13
TARGET: starfoods.pt REVENUE: ~ EMPLOYEES: ~ [LEAK / 3420 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-07-21
TARGET: https://centrodiagnosticocda.it/ REVENUE: ~ EMPLOYEES: ~ [LEAK / 135426 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-07-15
TARGET: wondrdiamonds.com & gemmount.com REVENUE: $12m USD EMPLOYEES: 200+ [LEAK / 247 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-07-25
TARGET: kalimancaribe.com & subra.bg. REVENUE: ~ EMPLOYEES: ~ [LEAK / 21311 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-08-10
TARGET: schmitz-nittenwilm.de REVENUE: €13,8M EMPLOYEES: ~ [LEAK / 886 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-08-10
TARGET: https://www.joygioielli.com/ https://www.gocciagioielli.com/ REVENUE: €19.2M EMPLOYEES: ~ [L…
Logo
Discovered: 2026-08-12 (21d ago)  ·  Attack est.: 2026-08-11
TARGET: https://www.camandona.ch/ REVENUE: $61.7M EMPLOYEES: 200 [LEAK / 9584 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)
PUBLICATION SCHEDULED. [LEAK / 84251 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)
PUBLICATION SCHEDULED. [LEAK / 20888 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)
PUBLICATION SCHEDULED. [LEAK / 5730 FILES]…
Logo
Discovered: 2026-08-12 (21d ago)
PUBLICATION SCHEDULED. [LEAK / 39200 FILES]…