Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo PFS Grupo - Plan de igualdad, Sostenibilidad

Group: qilin

Discovered by ransomware.live: 2025-03-04

Estimated attack date: 2025-03-04

Country: ES

Description:

Nuestro compromiso con la innovación y visión hacia el futuro nos ayuda a forjar el camino hacia el éxito empresarial, adaptándonos a los desafíos y liderando el cambio con determinación y experiencia.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 18

Third Party Employee Credentials: 0


External Attack Surface: 4


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse nicline.com
MX Records
  • pfsgrupo-com.mail.protection.outlook.com.
TXT Records
  • 20230223064447638r9kfarhfd0gqcawjgenzmx3rpqk4746tleva6a0atjbqh3w
  • 2021022114280640znyfq3zp2m3d00ob6kp6jo21tm1lde9zpmcoezdos7loulxf
  • 202402231250282xtk4ddog9hik6es7hmbbwhlt34vsd6peslf5icsydcbeojvou
  • 202002061428254w0ebt9o6vh3jjiky3sbi3e0alnrtq4dyf17p3ovydlqazf5t1
  • MS=ms67077724
  • v=spf1 ip4:88.2.254.20 ip4:217.76.128.100 include:spf.protection.outlook.com include:_spf.serviciodecorreo.es ~all
  • amazonses:cbf8PNR3a7uuQvcICR8wQBU2Dq8RH05Fs0Ro/Tl/StY=
  • 202202202334072xo00k0aqtx0dwe2y6bpkboq0pt52jiokd4dok21qwr7kmf1aw
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365

Leak Screenshot:

Leak Screenshot