Discovered
2025-07-23
Est. attack date
2025-07-15
Country
Data exfiltrated
2.3TB
Description:
[AI generated] Creditinfo is a leading service provider for credit information and risk management solutions worldwide. It was established in 1997 and has grown to have a presence in over 50 countries. As an international financial services company, it assists businesses, individuals, and organizations with credit-related decisions by offering a range of services, including credit risk management, marketing intelligence, and decision analytics.
DNS Records:
The following DNS records were found for the victim's domain.
- creditinfo-com.mail.protection.outlook.com.
- atlassian-domain-verification=SlJf/EJ6cZcm/sSfSnayQ0itjyXr7Y0fo9l1nfYqvILwLBSNe6YBEYlax/2cv3Dv
- ca3-b9731b7ba0174750a314b4d3e102a6bf
- duo_sso_verification=CVUr4IWqI044h5GhgFe9TmFRAXcp1fEDK7PIhigB2HSXZJtRWSiopdRuXtvnYfWa
- v=spf1 mx ip4:77.78.85.145 ip4:81.20.157.3 ip4:85.206.16.186 ip4:81.20.157.122 ip4:77.93.195.130 include:mailgun.org include:_spf.atlassian.net include:_spf.mlsend.com include:spf.protection.outlook.com include:servers.mcsv.net include:_spf.vist.is" " ip4:77.78.85.157 ip4:81.31.44.41 ip4:81.31.44.2 ip4:81.31.44.6 ip4:92.119.184.4 ~all
- _a7jv4b6ud7fipcgb1ssfjfxol8w51vq
- +CmFZxJ4d9dbb0jSmdCwv3eRA7//WDcjQKNOGohurE0FJlljlaOoiEKdhpnyLEbz/YS8cjvDsxksQbg0lsE+EQ==
- _0825jfelt9hpr6f59lcs98h15i89c6p
- _ij2buq1rk0tqq2o9lkiv5rk5jm6rfz3
- _oml1gdyacw6htkwpv6t6lvnaexv7965
Cloud / SaaS Services Detected
Atlassian
Mailchimp
Mailgun
Cisco Duo
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.