Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Catawba County Government

Group: Qilin

Discovered by ransomware.live: 2025-10-14

Estimated attack date: 2025-10-14

Country: US

Description:

Catawba County, NC provides an online directory to services around the area including Human Resources, Libraries, Sheriff's Office and more. Created for Catawba County and located in North Carolina.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 8

Third Party Employee Credentials: 0


External Attack Surface: 6


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ITInfrastructure CatawbaCountyNC.gov
MX Records
  • d163611b.ess.barracudanetworks.com.
  • d163611a.ess.barracudanetworks.com.
TXT Records
  • duo_sso_verification=tq04gNlWjiXWFpJhd0Ce0vFbE6IGgcB3SAB1T54iNirsN07QDjoonBgmIuPjowS4
  • 7nc6rq0nfgblne2907mmjeatt5
  • v=spf1 ip4:74.254.113.71 ip4:74.254.113.126 ip4:199.231.218.114 include:spf.protection.outlook.com include:spf.ess.barracudanetworks.com include:_spf.robly.com include:servers.mcsv.net -all
  • 6dfhl4fofja8c972l7slm3tsoq
  • 84mr75138989m0mcma7uh4bid5
  • ags28297q4pacjf6fl90eo5o7k
  • cisco-ci-domain-verification=77017a1a1a7444e1c6302ef6fe2c4a1f7b3e34052e4e299ace78a70a5a4dbb9d
  • apple-domain-verification=mR7R504BLxlpgqGU
  • MS=ms86943232
  • MS=73CF303E16FE8C2004718EE04C79B616A72DC471
  • ufhe64qas5q0s9qmaudm273s9t
Cloud / SaaS Services Detected
Apple Mailchimp Microsoft 365 Cisco Cisco Duo

Leak Screenshot:

Leak Screenshot