Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo skirball.org

Group: Qilin

Discovered by ransomware.live: 2025-06-12

Estimated attack date: 2025-05-22

Country: US

Description:

All data of this company will be available for download on 22.06.2025.Skirball Cultural Center is a meeting place guided by the Jewish tradition of welcoming the stranger and inspired by American democratic ideals of freedom and equality. 1. ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 2

Third Party Employee Credentials: 0


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • skirball-org.mail.protection.outlook.com.
TXT Records
  • asv=f5da30f11fd23d606df978cfd9d94158
  • bj4knvd2jcteu635jpeglsbj9
  • docusign=9fdabaef-53b6-446f-b245-4fea80759bb0
  • l5q0oag8p0de5h1gtpdib2sg36
  • 6qm4igbncuh072dck6shv7oh4
  • v=spf1 ip4:76.80.90.26 ip4:160.72.26.82 ip4:54.236.128.150 ip4:160.72.26.82 ip4:54.236.109.30 ip4:76.80.90.26 include:outboundmail.blackbaud.net include:spf.protection.outlook.com include:mailgun.org include:amazonses.com -all
  • cjcotrgu32quprm42odk8a6ns6
  • Foxit-domain-verification=89c5f1267b283d156cb7a49353e48ea1
  • ZOOM_verify_g9TgzusTTMykXTW3Xwz9EQ
  • MS=ms22588479
  • ySny55kU0pPT8KSWaNezsjvC1H9ZyCv4Gp741ltQcN95JkdxbHit50FCVnjoNRwGbNjB5i+TNOFmIg5wxwxiDQ==
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Mailgun DocuSign Zoom

Leak Screenshot:

Leak Screenshot