Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Cooperativa de Hostelería de Navarra

Group: Qilin

Discovered by ransomware.live: 2026-01-30

Estimated attack date: 2026-01-30

Country: ES

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 4

Third Party Employee Credentials: 0


External Attack Surface: 4


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • coope-com.mail.protection.outlook.com.
TXT Records
  • MS=ms74118940
  • v=spf1 a mx ip4:77.226.142.52 ip4:195.77.246.133 ip4:77.231.188.42 ip4:195.77.246.128/29 ip4:77.229.94.206 ip4:77.229.94.207 mx:mail.coope.com include:spf.protection.outlook.com -all
  • f7dn98i63lsocvi6ass0ufj72
  • zone-ownership-verification-95a386a741823691d93bc1a1a3c56610328c89eaef301a401d7523c2ddad6948
  • 1785981
  • 202007210730410iydjz4ndpd0ft69nttwbzr0a0b2ndjehol77lmvjvk4pf1ust
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot