Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo compagnons-du-devoir.com

Group: qilin

Discovered by ransomware.live: 2025-05-16

Estimated attack date: 2025-05-16

Country: FR

Description:

All data of this company will be available for download on 25.05.2025.The Association ouvrière des Compagnons du Devoir et du Tour de France (AOCDTF) is a non-profit association under the law of 1901. It brings together men and women of the ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 303

Third Party Employee Credentials: 8


External Attack Surface: 32


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse support.gandi.net
  • c5cfaee002116e09e13092afd2f4b3a5-5648187 contact.gandi.net
MX Records
  • compagnonsdudevoir-com02ec.mail.protection.outlook.com.
TXT Records
  • _globalsign-domain-verification=4ojdrudhfAIY_a2YzWtOEn2c2lRmZ5jWhmObyPwCUh
  • MS=4B1ED49B7DFAFEA82A0E80C67C62A9AB3F04E370
  • 7a73a335b2a7bf3d5e464e302d93fa3d
  • google-site-verification=ynrFJa1Yp_9KbqnWlTFi6A5sU9awDtXGpVzhZCbnmqA
  • VI117MP6U9FQ9B4OT14UGC27IZ9VT9PO1K9FLJLZ
  • MS=ms11884129
  • brevo-code:e8e076685fe4c9b40cf1520ea920b1cd
  • IIXmQv2aenOtp14QxX623f53is+YU3bbYDQfwjQ/4viYo/YPAMx/sg+vKjHxNlqD7sAfKtoZPOS1sYqRYuwxmg==
  • google-site-verification=QEYr_7VogPj1Nrdens5uidlxQWnM72W6TZQnoi9KodM
  • v=spf1 include:spf.mailjet.com a mx include:spf.mtasv.net include:spf.protection.outlook.com include:spf.mandrillapp.com include:spf1.ymag.cloud -all
Cloud / SaaS Services Detected
Microsoft 365 Mandrill Mailjet

Leak Screenshot:

Leak Screenshot