Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Arabia Holding

Group: Qilin

Discovered by ransomware.live: 2025-11-26

Estimated attack date: 2025-11-26

Country: EG

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 10

Third Party Employee Credentials: 32


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
  • 75120546 bluehostprivatename.com
MX Records
  • wp-secure-cloudmail01.worldposta.com.
  • wp-secure-cloudmail02.worldposta.com.
  • wp-secure-cloudmail03.worldposta.com.
  • wp-secure-cloudmail04.worldposta.com.
TXT Records
  • MS=6DCA6AC9A9FC8435CF0FAFC6B390281140DB2D29
  • v=spf1 mx include:_spf.worldposta.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot