Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Qilin
Discovered 2026-05-15 17:56 UTC
Est. attack date 2026-05-15
Country AU

Description:

N/A

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 31

Third Party Employee Credentials: 3


External Attack Surface: 4


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • spam.greenlight-itc.com.
TXT Records
  • Sendinblue-code:08db4f048446ca7d2ff27fb3bd9ff990
  • _xhu28blb99gggw431ma9k5m8zc39pep
  • MS=ms47517390
  • v=spf1 ip4:167.89.103.119 ip4:203.63.122.10 include:spf.sendinblue.com mx include:spf.protection.outlook.com include:sendgrid.net ip4:203.3.221.34 ip4:203.3.221.35 include:spf.au.exclaimer.net include:spf.mandrillapp.com include:_spf.intacct.com ~all
  • _06cowcrvyuobw925ca8hc07taehntvv
  • s23kfxm15glyz2g4rw9cz461n7534j55
  • intacct-esk=4BD28E491F677C51E063BF063D0A748C
Cloud / SaaS Services Detected
Microsoft 365 Sage Mandrill SendGrid Sendinblue

Leak Screenshot:

Leak Screenshot