Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Municipio de Quito

quito.gob.ec

Group Alphv
Discovered 2023-07-26 17:25 UTC
Est. attack date 2022-04-28
Country EC

Description:

Municipality of the Metropolitan District of Quito. It complies with the legislative task for the approval of ordinances, resolutions and agreements in the Metropolitan District of Quito.

Infostealer activity detected by HudsonRock

Compromised Employees: 324

Compromised Users: 11164

Third Party Employee Credentials: 109


External Attack Surface: 132


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusenic.ec
MX Records
  • mail2.quito.gob.ec.
  • mail3.quito.gob.ec.
  • mail4.quito.gob.ec.
  • quito-gob-ec.mail.protection.outlook.com. Microsoft 365
  • mail.quito.gob.ec.
TXT Records
  • MS=ms67779719
  • qfaok3tfu9c7q64bup85rucff8
  • globalsign-domain-verification=9E8E225ABC00EE62B0F907D92FA0D3B5
  • google-site-verification=M26j2fl4F-RmQzchEFI-N_AZD971sw0b_D7EXRKxFOs
  • tdc09om3Dtt5ii13D8oPapggTzDUAuv6oV2rLvN9g8tcZOPikPlfkroLW9ScBcWK6qlag69CusTgxk1igP4Z9Q==
  • v=spf1 mx ip4:190.152.144.94 ip4:181.112.137.251 ip4:181.112.137.252 ip4:181.112.137.253 ip4:181.112.137.254 ip4:181.112.32.48/28 include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot