Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Spring Grove Area School District

Group: Qilin

Discovered by ransomware.live: 2026-01-08

Estimated attack date: 2026-01-08

Country: US

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 17

Third Party Employee Credentials: 5


External Attack Surface: 12


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d114707a.ess.barracudanetworks.com.
  • d114707b.ess.barracudanetworks.com.
TXT Records
  • apple-domain-verification=F77tYUKMFVaDbFI9
  • MS=ms69423282
  • Rz4BqHUGPLwASXSPaW/8pyZmRpovhk1LIUInb2ewruizMDykdMmRKx9htM2qBx01QgimdG397gBrIbUSQI496Q==
  • v=spf1 include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:spf.sapphirek12.app include:spf.bqignite.com include:mailgun.org ip4:208.67.142.229 ip4:3.14.180.114 ip4:3.20.248.153 ip4:3.12.207.162 ip4:66.195.143.26 ip4:8.12.72.20" " -all
  • 24aec7315167aa90b70eade0d928f666
  • ZOOM_verify_ifjRajXwQQGsv-PJ6qNCZA
  • adobe-idp-site-verification=71e64c41736780adbf4f64926762fde9b1e443ad0e65a9ef1294e53f2a6296d8
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Mailgun Zoom

Leak Screenshot:

Leak Screenshot