Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Region of Istria

Group: Qilin

Discovered by ransomware.live: 2025-12-15

Estimated attack date: 2025-12-15

Country: HR

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 31

Third Party Employee Credentials: 0


External Attack Surface: 11


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • davor.sebastijan gmail.com
MX Records
  • cluster1.eu.messagelabs.com.
  • cluster1a.eu.messagelabs.com.
TXT Records
  • offensity-domain-verification=b300435747ea79b731a8ded6c5f99547b4d41d32d4e9c5ba902610288f1b335b
  • 33nt88ggxm6phn7l9v2w9c44rpzs32lw
  • MS=1DD0A31651950C42D84150906F126AD43E71C948
  • I0S6T58164
  • offensity-domain-verification=ef41650af6b1d74dbd0189779808fdf63795713d93e4c7596ac6a9f15b8fd876
  • v=spf1 mx include:spf.messagelabs.com a ip4:185.168.117.0/27 -all
  • hyksj0bvzgzv5x0wmk6ctz4y3h0r7f74
  • google-site-verification=frNmSJ1GPiwRsMuPU6P5W7ITaUeZa2iuysXGMzbgxkY
  • offensity-domain-verification=f6aa29e6a4097dd0ed7c1d2b5b83bf222f551087f09190303403f5cdd81821da
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot