Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo COTTAGE

Group: Qilin

Discovered by ransomware.live: 2025-12-03

Estimated attack date: 2025-10-27

Description:

N/A



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
  • u59yz5u95zj networksolutionsprivateregistration.com
MX Records
  • cottagehospital-org.mail.protection.outlook.com.
TXT Records
  • tqgT6yeDLhUMQ4J0vor4nsB2T0WldPlpXY5IMVqxIfvtPSV07C43IkgRTWv8ivP98CmPHJxxxzFr9afW6LibcQ==
  • v=msv1 t=1F98014A-9CAF-43D5-B274-F52886B95144
  • v=spf1 ip4:24.181.251.181/30 ip4:192.159.151.70/31 include:spf.protection.outlook.com -all
  • 36lvtrmkc93md8q9nk5o6llvbt
  • 7plpqu07o2ag64u9bfn6u4h2u3
  • MS=ms11526125
  • android-enroll=https://ch-ldcsa.cottagehospital.org/rtc/ch-landesk01/MDM/api/v1/enroll/AndroidEnroll
  • ca3-849eaea83fc048fa85b52ad20b95cbc5
  • n5jsgcflmeppsfbv7b835t66s3
  • obd2ofnla9mnmp6p5dte8ocra1
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot