Skip to content
[SETTRA] – Ransomware Victim: namtheun2[.]com

[SETTRA] – Ransomware Victim: namtheun2[.]com

Redpacketsecurity admin September 22, 2026

Verification alert Listings attributed to SETTRA have been reported as including unverified or fabricated victim claims. Treat this post as unconfirmed until corroborated with independent evidence. See further information here: BankInfoSecurity

See further information here: BankInfoSecurity

NOTE: No files or stolen information are exfiltrated, downloaded, taken, hosted, seen, reposted, or disclosed by RedPacket Security. Any legal issues relating to the content should be directed at the attackers, not RedPacket Security. This blog is an editorial notice informing that a company has fallen victim to a ransomware attack. RedPacket Security is not affiliated with any ransomware threat actors or groups and will not host infringing content. The information on this page is automated and redacted whilst being scraped directly from the SETTRA Onion Dark Web Tor Blog page.

AI Generated Summary of the Ransomware Leak Page

On September 11, 2026, the energy and utilities organization namtheun2.com in Laos was listed in connection with an alleged ransomware-related data exposure. Because no separate compromise date is provided, September 11, 2026, should be treated as the post date. The listing claims that approximately 1.2 TB of files associated with namtheun2.com were obtained and describes the material as files that were “never meant to leave.” The available information indicates a data-leak claim, but does not state that the victim’s systems were encrypted. The post references a prologue and includes a VAT declaration document identifier as an example of the allegedly obtained material. No specific categories of stolen data, operational impact, or affected systems are described. The listing does not provide a ransom amount or other financial demand. It contains no screenshots or other images, and no downloadable files are indicated in the available content. The claim therefore remains limited to an alleged 1.2 TB data disclosure associated with namtheun2.com.

On September 11, 2026, the energy and utilities organization namtheun2.com in Laos was listed in connection with an alleged ransomware-related data exposure. Because no separate compromise date is provided, September 11, 2026, should be treated as the post date. The listing claims that approximately 1.2 TB of files associated with namtheun2.com were obtained and describes the material as files that were “never meant to leave.” The available information indicates a data-leak claim, but does not state that the victim’s systems were encrypted.

The post references a prologue and includes a VAT declaration document identifier as an example of the allegedly obtained material. No specific categories of stolen data, operational impact, or affected systems are described. The listing does not provide a ransom amount or other financial demand. It contains no screenshots or other images, and no downloadable files are indicated in the available content. The claim therefore remains limited to an alleged 1.2 TB data disclosure associated with namtheun2.com.

A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon or Buy Me A Coffee using the buttons below.

Extracted Entities

Attack Types (1)

Countries (1)

Domains (1)

Industries (2)

Ransomware Groups (1)