Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Madera County Superintendent of Schools

Group: Qilin

Discovered by ransomware.live: 2025-12-25

Estimated attack date: 2025-12-25

Country: US

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 1


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • tld-abuse hostopia.com
  • dbhelp mcsos.org
  • dns aplus.net
MX Records
  • mcsos-org.mail.protection.outlook.com.
TXT Records
  • adobe-idp-site-verification=3b0ed7959c010f9ccf2cc649219dc145b70de24b0040df2c6cfb3afb207449a9
  • gtubl02abhfvfnr3frl0mlsgnb
  • @ 3600 IN TXT adobe-idp-site-verification=3b0ed7959c010f9ccf2cc649219dc145b70de24b0040df2c6cfb3afb207449a9
  • v=spf1 include:spf.protection.outlook.com include:sendgrid.net ip4:206.78.120.14 ip4:206.78.117.53 ip4:206.78.116.201 ip4:206.78.118.130 ip4:168.245.31.195 ip4:198.189.175.13 ip4:192.40.172.4 ip4:192.40.172.139 ip4:20.118.176.15 ip4:20.118.176.58 ~all
  • MS=ms58590443
  • apple-domain-verification=Ofuz5SFL0w95Uq71
  • 5v2nj52oev30o1mne7kuhkag4h
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 SendGrid

Leak Screenshot:

Leak Screenshot