Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Fundação Carlos Chagas

fcc.org.br/

Group Alphv
Discovered 2023-07-26 15:08 UTC
Est. attack date 2023-04-26
Country BR

Description:

The FCC (Carlos Chagas Foundation) is a private, nonprofit institution that operates in two main areas: Assessment/Civil Service Exams/Selection Processes and Research and Education. Since it was founded 55 years ago, it has been recognized for its competence in conducting civil service exams, college admission tests, system evaluation and socio-educational research.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1696

Third Party Employee Credentials: 5


External Attack Surface: 65


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • alt3.aspmx.l.google.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
  • alt4.aspmx.l.google.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
  • aspmx.l.google.com. Google Workspace
TXT Records
  • v=spf1 include:_spf.google.com include:spf.mandrillapp.com ip4:187.9.12.152/29 ip4:200.143.180.234 ip4:177.126.184.160/27 ip4:200.155.188.128/28 -all
  • _globalsign-domain-verification=CPnXZqRuxwYT26exz8ZKc9RZfhdcw-EF9vzWmtC0OT
  • KCMXHK3RH30ACOGDXAQYDJQBDI16R8JP5FOYVD2U
  • docker-verification=765b9967-4101-49f1-9357-a8b95599746f
  • google-site-verification=n4-_FrkptuRNPzvDibUQWEjURGfg3WBuzZ0oYGMrWOU
Cloud / SaaS Services Detected
Docker Global Sign Mandrill

Leak Screenshot:

Leak Screenshot