Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo The American School Foundation

Group: Qilin

Discovered by ransomware.live: 2025-11-26

Estimated attack date: 2025-11-26

Country: MX

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 18

Compromised Users: 18

Third Party Employee Credentials: 30


External Attack Surface: 25


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ayuda nic.mx
  • abuse nic.mx
MX Records
  • aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • alt2.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • MS=593806BDDA91DDAAAAA6AC365F9ED0E9ACD8031D
  • adobe-idp-site-verification=0416abb5ceac63cb75f1aba888bfde8aabba7623f346117bca71ff2f2f0b7345
  • apple-domain-verification=9EmB1bfodqn98fbk
  • apple-domain-verification=xhGQ1dD2iEDnKwha
  • openai-domain-verification=dv-RGd5VLYDRqJLLX9GJSwkSfUV
  • MS=ms30724460
  • apple-domain-verification=IzuP5EnqGktcgKgv
  • 6e490eb425ddc1486ea6fa90559b354e
  • google-site-verification=uLJZ3o2ykmEJSImuW3leYZgBXILzTz2shLjZzTxYIZM
  • v=spf1 include:_spf.google.com include:_spf.embluemail.com ~all
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365

Leak Screenshot:

Leak Screenshot