Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.ancc.org

Group: Qilin

Discovered by ransomware.live: 2025-05-01

Estimated attack date: 2025-03-15

Country: US

Description:

Started in 1861, the Army Navy County Club offers golfing, swimming, use their fitness center, and golf and tennis Pro Shops to its members.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • ancc-org.mail.protection.outlook.com.
TXT Records
  • cisco-ci-domain-verification=2d57424c6fbb110bd38a17c68fe6f66cb4d834b0d25d0b4d547d82b58f5213fd
  • dqxhyrs4kzggzj13smwn54sdc6hgwkg9
  • duo_sso_verification=4rL7FTg9S9nNEVKRQcp8PT9qd8TqPUV2vCdUj1st6iQ34v0lHl9tnv0g3wy5NE9w
  • glwkqq02cmvvm6d034kgdpypfcgc7n2l
  • google-site-verification=ev8yPzbEaqZFrKyz-NoWTNFUt9JoVHdGVvayunyvPQY
  • v=spf1 mx ip4:57.177.245.183 ip4:108.31.214.102/32 ip4:108.31.214.106/32 a:mail.ancc.org include:spf.protection.outlook.com include:spf.ess.barracudanetworks.com -all
  • 1/dsW/oy4XB8FRyUY7gtDXK0NgJIbNTykttP0ufp1K5gpXbsVtFOMmzH9xW6Ver9QhMAGM9+1GoZ10qMnO8KgQ==
  • MS=ms44935040
  • ca3-ab9f90f5a4cb4b59824d1c1659208d6e
Cloud / SaaS Services Detected
Microsoft 365 Cisco Cisco Duo

Leak Screenshot:

Leak Screenshot