Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Questica

Group: Qilin

Discovered by ransomware.live: 2025-12-28

Estimated attack date: 2025-12-28

Country: CA

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 42

Third Party Employee Credentials: 0


External Attack Surface: 5


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@namecheap.com
  • 8308347432c14fef980b741959ef49c4.protect@withheldforprivacy.com
MX Records
  • questica-com.mail.protection.outlook.com.
TXT Records
  • ZOOM_verify_h14VVyouTa-EDsBtBcZR_Q
  • atlassian-domain-verification=/pgCaao01MEfm0G1H7ODd9Jgxms24Ci1E5gSmFWNuZNoP+DCJTgtz3dU9H/uOpR8
  • apple-domain-verification=bMLYIXnnjBcRCxg1
  • google-site-verification=_iNb7PcMtSUQSojYilJ4PyNERLsRaRr0QA8oCHQQBdc
  • _spf.dayforcehcm.com
  • v=spf1 include:autotask.net include:spf.protection.outlook.com include:servers.mcsv.net include:mailers.websitetoolbox.com include:aspmx.pardot.com include:sendgrid.net include:sendgrid.me ~all
  • knowbe4-site-verification=1c3f6202c312d3e14629283c26e0ddad
  • 9d03d9aeba0f41afb0c065df5b02355d
  • pardot780483=5d06ae33ec85a291082f707a10b196f184fd5f549681332ab8cec5611cac2f45
  • GEXREQZ7TW._autotask.questica.com
Cloud / SaaS Services Detected
Apple Atlassian Mailchimp Salesforce KnowBe4 SendGrid Zoom

Leak Screenshot:

Leak Screenshot