Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Casadei

Group: Qilin

Discovered by ransomware.live: 2026-01-19

Estimated attack date: 2026-01-19

Country: IT

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 13

Third Party Employee Credentials: 1


External Attack Surface: 7


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@ascio.com
MX Records
  • casadei-com.mail.protection.outlook.com.
TXT Records
  • facebook-domain-verification=lttqcrzguop4rjezmxh63furz1mv9e
  • facebook-domain-verification=xt7pdj4o2afwbyddc0k07rof24xlsi
  • MS=ms87046954
  • v=spf1 include:spf.protection.outlook.com ip4:217.58.25.234 ip4:194.145.12.201 include:_spf.muc.ec-messenger.com ip4:160.8.89.129 ip4:160.8.89.161 include:_spf.muc.ec-messenger.com redirect=spf.g.shortest-route.com -all
  • google-site-verification=rY_beDTS-a_iOD-PpjjYOqqzGnTyTTnBQsGitJQmyE
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot