Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo SW/WC Service Cooperative

Group: Qilin

Discovered by ransomware.live: 2025-12-24

Estimated attack date: 2025-12-24

Country: US

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 2


External Attack Surface: 1


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
  • josh.sumption swwc.org
MX Records
  • scspam2.swwc.org.
TXT Records
  • MS=ms65619538
  • _ovrt8sxru8r4u8aayf3nv5hbf2f7ich
  • apple-domain-verification=AkGprmeR2KQQvwwV
  • adobe-idp-site-verification=755ea4c85f80df72ff6eafabcda5dd4d2bbf0a54aae0fb4869bc2cb35ccf2198
  • google-site-verification=MRNoN4XJZTX2TTOekMyWyZxkyRGg9_avknobkM3gSTo
  • google-site-verification=YLZo7tgjzwLt9A0gXOT2lI-1VPB8WT0SufjpLZOTXfk
  • duo_sso_verification=aNBer5gnwuPh2McgRXNr8ayl4qVjlNqSXQUuErTjBRkwz93iVXl7FRVCqVwaekkJ
  • v=spf1 a mx ip4:66.172.180.0/24 ip4:66.220.216.200/32 ip4:104.237.140.188/32 ip4:205.201.133.57/32 include:_spf.google.com include:spf.protection.outlook.com include:_spf.arlo.co include:_spf.createsend.com -all
  • have-i-been-pwned-verification=dweb_5pb7zb0o1uenvemntkfper1f
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Cisco Duo Have I Been Pwned

Leak Screenshot:

Leak Screenshot