Ransomware Group:  
Moneymessage



Sponsored by Hudson RockUse Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business


Sites | Ransom Note(s) | Activity | Worldmap | Victims (24)


Sites

Favicon Title Available Last Visit FQDN Screenshot
News 🟢 2025-01-18 03:01:28.256223 blogvl7tjyjvsfthobttze52w36wwiz34hrfcmorgvdzb6hikucb7aqd.onion 📸

Ransom Note(s)

Activity over time

Worldmap

24 Victims

AR flag

National Atomic Energy Commission 

Company logo
Ransomware Group:

Discovery Date: 2024-12-18 17:17

Sector: Government
[AI generated] The National Atomic Energy Commission (CNEA) is an Argentine government agency responsible for the development and regulation of nuclear energy. Established in 1950, it focuses on research, development, and the peaceful use of nuclear technology. CNEA oversees nuclear power plants, medical applications, and scientific research, playing a key role in Argentina's energy and technological advancements.

Victim:   |  Group: 
RU flag

Kazyon 

Company logo
Ransomware Group:

Discovery Date: 2024-12-13 19:17

[AI generated] Kazyon is a prominent discount supermarket chain based in Egypt. Founded in 2014, it focuses on providing affordable grocery options to consumers. Kazyon operates numerous stores across the country, emphasizing cost-effective pricing and accessibility. The company aims to offer a wide range of products, including fresh produce, packaged goods, and household items, catering to diverse customer needs.

Victim:   |  Group: 
EG flag

The Egyptian Tax Authority (ETA) 

Company logo
Ransomware Group:

Discovery Date: 2024-11-17 01:50

Sector: Government
[AI generated] The Egyptian Tax Authority (ETA) is the governmental body responsible for tax administration in Egypt. It oversees the implementation and collection of various taxes, including income tax, corporate tax, and value-added tax (VAT). The ETA aims to enhance compliance, improve tax revenue, and support economic development through efficient tax policies and systems. It also works to modernize tax procedures and provide taxpayer services.

Victim:   |  Group: 
 flag

First Baptist Medical Center 

Company logo
Ransomware Group:

Discovery Date: 2024-06-19 11:44

Sector: Healthcare

Victim:   |  Group: 
US flag

Insurance Agency Marketing Services 

Company logo
Ransomware Group:

Discovery Date: 2024-05-16 14:43

Sector: Financial

Victim:   |  Group: 
US flag

Anna Jaques Hospital 

Company logo
Ransomware Group:

Discovery Date: 2024-01-19 22:36

Sector: Healthcare

Victim:   |  Group: 
 flag

Tri-Way Manufacturing Technologies 

Company logo
Ransomware Group:

Discovery Date: 2023-10-12 14:35

Sector:

Victim:   |  Group: 
 flag

Toscana Promozione 

Company logo
Ransomware Group:

Discovery Date: 2023-10-03 17:50

Sector:

Victim:   |  Group: 
 flag

MD LOGISTICS 

Company logo
Ransomware Group:

Discovery Date: 2023-10-03 17:50

Sector:

Victim:   |  Group: 
 flag

Maxco Supply 

Company logo
Ransomware Group:

Discovery Date: 2023-10-03 17:49

Sector:

Victim:   |  Group: 
 flag

Taylor University 

Company logo
Ransomware Group:

Discovery Date: 2023-09-03 20:03
Estimated Attack Date: 2023-09-02

Sector:

Victim:   |  Group: 
 flag

Riverside Logistics 

Company logo
Ransomware Group:

Discovery Date: 2023-09-03 20:02

Sector:

Victim:   |  Group: 
 flag

Estes Design & Manufacturing 

Company logo
Ransomware Group:

Discovery Date: 2023-09-03 20:02

Sector:

Victim:   |  Group: 
 flag

Aiphone 

Company logo
Ransomware Group:

Discovery Date: 2023-09-03 20:01

Sector:

Victim:   |  Group: 
 flag

Propper International 

Company logo
Ransomware Group:

Discovery Date: 2023-07-15 21:59
Estimated Attack Date: 2023-07-11

Sector:
Founded in 1967, Propper is a manufacturer of clothing and gear for tactical, law enforcement, public safety, and military applications The company is headquartered in St. Louis, Missouri.

Victim:   |  Group: 
 flag

Meteksan Defence Industry 

Company logo
Ransomware Group:

Discovery Date: 2023-07-15 21:58
Estimated Attack Date: 2023-07-14

Sector:
Meteksan Defence Industries, Inc. is a subsidiary of Bilkent Holding and Bilkent University of Ankara, Turkey. The Company employs 150 personnel, where more than 100 high degree engineers comprise the direct technological workforce.

Victim:   |  Group: 
US flag

Pharmerica.com & BrightSpring Health Services 

Company logo
Ransomware Group:

Discovery Date: 2023-04-08 09:11

Sector:
Headquartered in Louisville, Kentucky, PharMerica is one of the largest and fastest-growing institutional pharmacy companies in the United States. Our premier pharmacy services, with more than 180 long-term care pharmacies in almost every state, have a national scope but a local approach.Revenue: $3BBrightSpring Health Services is the leading provider of complementary home- and community-based health services for complex populations in need of specialized and/or chronic care. We focus on providing quality outcomes, through best-in-class service and technology capabilities.Revenue: $5.4B

Victim:   |  Group: 
US flag

Micro Star International 

Company logo
Ransomware Group:

Discovery Date: 2023-04-07 02:24

Sector:
Micro-Star International AKA MSI designs, manufactures, and sells motherboards and graphics cards for customers in the United States, Canada, and internationally. MSI is headquartered in Taipei, Taiwan. MSI source code, including framework to develop bios, also we have private keys.We will publish stolen data when timer expires.Databases: wwrlt2, eais, CTMS, ERP.Revenue: $7BWebsite: msi.com

Victim:   |  Group: 
 flag

Guess who! 

Company logo
Ransomware Group:

Discovery Date: 2023-04-05 21:15

Sector:
One huge trust have lost gigabytes of their's data and now playing with fire trying to hang time. Keep an eye on the stocks, don't lose your money.

Group: 
 flag

midamericanglass.com 

Company logo
Ransomware Group:

Discovery Date: 2023-04-03 23:10

Sector:
Mid-American Glass is a regional distributor / fabricator of flat glass, insulating glass, and architectural metal. While flat glass distribution remains the strength of our company, our fabrication of insulating glass and architectural metal continues to drive our growth.Website www.midamericanglass.comRevenue $11.4M

Victim:   |  Group: 
 flag

Goldenbear.com & mjhallandcompany.com 

Company logo
Ransomware Group:

Discovery Date: 2023-04-02 21:22

Sector:
GOLDENBEAR.COMGolden Bear is a leading provider of commercial property and casualty, professional liability, and residential earthquake insurance.Revenue: 20.8M$Eployees: 82Website: www.goldenbear.commjhallandcompany.comSince 1973, M.J. Hall and Company has earned a name for dependable Business Insurance, as well as one of California's most experienced general agents.Revenue: 11.1M$Eployees: 55Website:www.mjhallandcompany.com

Victim:   |  Group: 
 flag

Lpa-group.com 

Company logo
Ransomware Group:

Discovery Date: 2023-04-01 21:05
Estimated Attack Date: 2023-01-04

Sector:
LPA is a leading UK manufacturer in the design and build of connectors, LED lighting and electrical systems. Founded in the 1800’s, the Company has a long product development history where high reliability, low maintenance and life cycle costs are an intrinsic part of our product design and build ethos. All companies are ISO 9001 certified.Revenue: UK£19.3m

Victim:   |  Group: 
 flag

Hawaii self storage 

Company logo
Ransomware Group:

Discovery Date: 2023-03-29 15:43
Estimated Attack Date: 2023-03-19

Sector:
Hawaii Self Storage is a locally owned company, committed to service the people & businesses in Hawaii with exceptional storage services. Data 32GB:

Victim:   |  Group: 
BD flag

Biman airlines 

Company logo
Ransomware Group:

Discovery Date: 2023-03-29 15:43
Estimated Attack Date: 2023-03-23

Sector:
Biman Bangladesh Airlines (Bengali) is the national flag carrier airline of Bangladesh. The airline provides international passenger and cargo services to Asia and Europe, as well as major domestic routes inside Bangladesh.

Victim:   |  Group: