Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Akira
Discovered 2025-09-08
Est. attack date 2025-08-13
Country CH

Description:

VARDECO SA specializes in high precision bar turning and screw ma chining, offering services for small, medium, and large custom se ries. We are going to upload 42 GB of corporate data. Employee personal files (passports, driver licenses, SSNs), project files, financi al data, drawings and specifications, customer information, NDAs, etc.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 0


External Attack Surface: 1


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@infomaniak.com
  • privacy@domainprivacytrustee.ch
MX Records
  • vardeco-com.mail.protection.outlook.com.
TXT Records
  • MS=076F2937CE27BB23951C1FDCC0C1BBE0E4E540EE
  • google-site-verification=N6zLiEDDDfcDqKmgMZ5zS9J6xseZQbwUT_klJBVpQyg
  • v=spf1 a mx include:spf.protection.outlook.com include:aspmx.pardot.com include:_spf.salesforce.com include:spf.sendinblue.com include:_spf.elasticemail.com -all
  • tmes=8821fc6768425487ce5688343ced409a
  • sophos-domain-verification=bdc3acc978f4bb5092cd8c2e96865b6a563e0fc466753ce6631bc2724f3f859b
  • pardot869261=aa4603dc4df1aceb041b6f99c21f4373835c9a9efbae9ae913f4fd7a0cdc3501
  • Sendinblue-code:abc6a6312eb8a3406643d3714c673691
Cloud / SaaS Services Detected
Salesforce Sendinblue TrendMicro Sophos