Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Orange Madagascar

Group: Qilin

Discovered by ransomware.live: 2026-03-06

Estimated attack date: 2026-03-06

Country: MG

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 35

Compromised Users: 1135

Third Party Employee Credentials: 67


External Attack Surface: 74


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • admin@internationaladmin.com
MX Records
  • mail.orange.mg.
TXT Records
  • 3y5y2h24lwk9mwqkvz2fgbh9fccyzmg6
  • v=spf1 ip4:41.74.25.218 ip4:41.190.236.39 ip4:41.74.25.22 ip4:41.74.25.20 ip4:41.74.25.21 ip4:41.74.25.19 ip4:41.74.25.18 ip4:41.74.25.24 ip4:41.190.236.50 ip4:41.190.236.51 ip4:41.190.236.53 ip4:41.74.25.24 include:spf.hodi.host ip4:80.69.216.41 ~all
  • google-site-verification=eoh-oclQIXY_7Il2GA8qV4IBOTULyQSk1ysB_PRmxw8
  • orangemoney.orange=tl6688ld3m69zxj6f38cswbsxn7kvhzw
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot