Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

Group Timc
Discovered 2026-04-09 15:17 UTC
Est. attack date 2026-04-09
Country GB
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

We breached into their intranet and have total control of it , with 1TB+ data exfiltrated including covid-19 database and SaaS src code like oncomine KB and Other PII Full data breach after the DDL

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusesupport.gandi.net
  • hellodbs.agency
  • aad399a70645e633599a6a46ed94639f-4075817contact.gandi.net
  • oncologicadbs.agency
MX Records
  • cluster8a.eu.messagelabs.com.
  • cluster8.eu.messagelabs.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:spf.mailjet.com include:spf.messagelabs.com include:_spf.hostedemail.com include:oncologica.it -all
Cloud / SaaS Services Detected
Mailjet