Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Powers HVAC

Group: Qilin

Discovered by ransomware.live: 2026-03-11

Estimated attack date: 2026-03-11

Description:

N/A



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • mx1-us1.ppe-hosted.com.
  • mx2-us1.ppe-hosted.com.
  • powershvac-com01e.mail.protection.outlook.com.
TXT Records
  • intacct-esk=D8B535065E16C376E053C8220D0A82BC
  • bw=ojpzEV8lFUiP2YrsCgBQTfazNy1athwDdjVnnCiHIGVG
  • ppe-e0dcde82fe0558a338acdd679c292c2940ab32c7
  • nintex.60de07faa9883b006a36f70b
  • v=spf1 ip4:12.198.211.162 ip4:38.58.228.238 a:dispatch-us.ppe-hosted.com include:mailgun.org include:_spf.intacct.com include:spf-us.emailsignatures365.com include:spf.protection.outlook.com ~all
  • airtable-verification=cab3ff068717e29b626987214857b186
Cloud / SaaS Services Detected
Sage Mailgun Proofpoint Essentials

Leak Screenshot:

Leak Screenshot