Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Gtech

Group: Qilin

Discovered by ransomware.live: 2026-01-14

Estimated attack date: 2026-01-14

Country: US

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 171

Third Party Employee Credentials: 3


External Attack Surface: 28


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • eu-smtp-inbound-2.mimecast.com.
  • eu-smtp-inbound-1.mimecast.com.
TXT Records
  • google-site-verification=gMe0R5Gu7rafuiaXsX6ytP2DcOmNKllkSyfDQ0fFpSM
  • 0y36hz49v5v1fpmpdfbg4sj171f1t16l
  • klaviyo-site-verification=XVkzMK
  • tlbk2llfs6mzwp2wy6yhl1nf9ymq6wd4
  • loaderio=d9145617de3a496f8b3b497d558ac2fa
  • linkedin-site-verification=f122510b-ee0d-497a-a955-2e8ded513ab3
  • Validity-Domain-Verification=a3oLWpmwaLg8S4Ju5cOOrG4RxEk=
  • 63mjk48884qvc28ynpcf2snxsgcdtvf0
  • apple-domain-verification=9w6Ny9xNSDDF905A
  • t0d67ynqd66yn484jl96b38sx48q8jqs
  • v=spf1 ip4:157.231.143.50 ip4:198.244.229.183 include:_netblocks.mimecast.com include:spf.protection.outlook.com ~all
  • a3oLWpmwaLg8S4Ju5cOOrG4RxEk=
  • dxznrv9f34kxsbr11nh3f3nvsm10jmcs
  • facebook-domain-verification=db045mq2i685f97c835smcx273tx9x
Cloud / SaaS Services Detected
Apple Mimecast

Leak Screenshot:

Leak Screenshot