Group:
Blackbasta
Discovered by ransomware.live: 2025-01-11
Estimated attack date:
2024-12-12
Country:
Description:
Avril Supermarché Santé, an independent health food supermarket chain based in Quebec, Canada. Founded in 1995, Avril aims to promote a healthy lifestyle by making natural and organic products accessible to everyone. The company operates multiple stores across Quebec and offers a wide range of products, including groceries, supplements, beauty items, and ready-to-eat meals.SITE: www.avril.caADDRESS:
11 rue Évangéline
Granby, Quebec, J2G 6N3
Canada.TEL#: 1-844-375-6446ALL DATA SIZE: ≈550gb+
1. Financial data, Accounting
2. Human Resources
3. Personal employees documents
4. DirectionMagasin
5. Marketing
& etc…
Infostealer activity detected by HudsonRock
Compromised Employees: 0
Compromised Users: 102
Third Party Employee Credentials: 1
External Attack Surface:
35
DNS Records:
The following DNS records were found for the victim's domain.
- Please ask the Registrar of Record identified in this output for information on how to contact the Registrant, Admin, or Other contacts of the queried domain name
- reg.ca-admin@gandi.net
- abuse@support.gandi.net
- b66e9658d2621cde562c104488e52d83-5306412@contact.gandi.net
- 258f4ed9f076eb7538365044214a72f1-4692776@contact.gandi.net
- a8aead4b1f8b2ce9c0bf00229dd8fc21-5306415@contact.gandi.net
- avril-ca.mail.protection.outlook.com.
- _l3f2hvthq6iomii0iizjj1zs065p8c0
- _wewr9oqj56u5yi3sjtw0tiy7mh24a1o
- _zaqiiow1x4blrhcxcxdtygg7eeruwf0
- apple-domain-verification=Z6_dnxmddKJoDmxJKa_GH2UZSumWDdN0UwJtsxC3eyU
- facebook-domain-verification=nchbttzykfdav2whfq4ncds5drkxz0
- google-site-verification=QNVpzqzxY6NkLOXckfO_ct7ZKgGmVeYIBwqpjOuIMXY
- perplexity-ai-domain-verification-2zbhj6=LLc7PhPeCg3YRYYD5TGa6FSQW
- v=spf1 include:_spf.mailersend.net ip4:184.95.215.17 ip4:209.222.234.158 include:spf.protection.outlook.com include:amazonses.com include:servers.mcsv.net include:mail.zendesk.com include:maintenancedirecte.net -all
- MS=ms40526823
- _globalsign-domain-verification=5lNBDnOokdPVeXAz9O3eR7r3QWQhhzOwB5yzyGj6lf
Cloud / SaaS Services Detected
Apple
Amazon SES/WorkMail
Mailchimp
Microsoft 365
Zendesk
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.