Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Trace

Group: Qilin

Discovered by ransomware.live: 2026-01-30

Estimated attack date: 2026-01-30

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 919

Third Party Employee Credentials: 18


External Attack Surface: 24


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@support.gandi.net
MX Records
  • vade-mx-eu-fallback02.hornetsecurity.com.
  • ALT2.ASPMX.L.GOOGLE.com.
  • vade-mx-eu-fallback01.hornetsecurity.com.
  • vade-mx-fr02.hornetsecurity.com.
  • vade-mx-fr01.hornetsecurity.com.
TXT Records
  • google-site-verification=-1MXatRXl33uDP1CkdyHWSf1SqaMvjmU_HsR87mQpKs
  • MS=ms15204693
  • v=spf1 ip4:62.23.114.150 include:_spf.google.com include:spf.hornetsecurity.com include:spf.mandrillapp.com include:aspmx.pardot.com include:servers.mcsv.net include:mail.zendesk.com include:spf.sendinblue.com include:sendgrid.net ~all
  • wrike-verification=MTk2MzgyMzpkYTM5NGU5OGJhNzhiNjVhNmRlMTE0YjVlZmYzYTg0NjBiM2EzYmEzN2MzZDMwMzZlZmY1Mjk0YjUxZDRkYjg1
  • sendinblue-code:4e944c83928ff86ee55f8633e1347157
  • t=y; o=~;
  • google-site-verification=CdTMiX3qWAFhEhdpgnOVUaL7786akGeLqjQLGGpItiI
  • google-site-verification=9ArjxZPY6qKXzhtag8fO6mG3adXWBXB9SkcSkbZ5_R4
  • pardot927493=9cf144e741b0df3366d2c49fd1caf58b1dc162157ea0bc670a4286d8dacf934b
  • k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGoQCNwAQdJBy23MrShs1EuHqK/dtDC33QrTqgWd9CJmtM3CK2ZiTYugkhcxnkEtGbzg+IJqcDRNkZHyoRezTf6QbinBB2dbyANEuwKI5DVRBFowQOj9zvM3IvxAEboMlb0szUjAoML94HOkKuGuCkdZ1gbVEi3GcVwrIQphal1QIDAQAB;
  • google-site-verification=aSRimmo1YMAbuMwJiWaahteJ6_q0fMPNt1abwFF2aDc
  • proxy-ssl.webflow.com
  • google-site-verification=TJ-r50DvgpLyt8E3Umx9IbDwDT6I-QCmD3zH07uwKlA
  • v=DMARC1; p=quarantine; rua=mailto:dmarc-reports@trace.tv
Cloud / SaaS Services Detected
Mailchimp Microsoft 365 Salesforce Zendesk Hornetsecurity Mandrill SendGrid Sendinblue

Leak Screenshot:

Leak Screenshot