Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Ever Green Industria e Comercio Ltda

Group: Thegentlemen

Discovered by ransomware.live: 2025-12-24

Estimated attack date: 2025-12-24

Country: BR

Description:

www.evergreen.com.br https://www.zoominfo.com/c/ever-green-industria-e-comercio-ltda/426965047 Ever Green Industria e Comercio Ltda is a company that operates in the Animals & Livestock industry. It employs 250to499 people and has 10Mto25M of revenue. The company is headquartered in Sao Bernardo do Campo, Sao Paulo, Brazil. Products are sold in Brazil, Latin America, and Africa, in food retail (wholesalers and retailers), the pharmaceutical channel, the hospital channel, and the institutional channel. Ever Green's products are present in more than 130,000 points of sale. Founded in 1987, Ever Green operates in the Brazilian and international markets


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 52

Third Party Employee Credentials: 3


External Attack Surface: 3


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • evergreen-com-br-01.unodata.com.br.
TXT Records
  • v=spf1 +a +mx ip4:192.175.104.0/24 include:_spf.unodata.com.br include:spf.idc2.mandic.com.br ~all
  • MS=4AB50384A0642608530E7B97568D4A812340A029
  • kt4mcurn49h3l105kefealrtrt
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot