Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.barobinson.com

Group: Qilin

Discovered by ransomware.live: 2025-07-28

Estimated attack date: 2025-07-23

Country: CA

Description:

Founded in 1936 and headquartered in Winnipeg, Manitoba, B. A. Robinson Co. Ltd. is a fully diversified distributor of plumbing, lighting and electrical products. B. A. Robinson distributes to the construction industry and retail home improve ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 8

Third Party Employee Credentials: 0


External Attack Surface: 2


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse webnames.ca
  • WN7e1bc0 webnamesprivacy.ca
MX Records
  • mxa-003a7a01.gslb.pphosted.com.
  • mxb-003a7a01.gslb.pphosted.com.
TXT Records
  • klaviyo-site-verification=QNTLLF
  • shopify-verification-code=RR2AByQwlAhUbwNdEupBwNIQEpile5
  • v=spf1 ip4:70.33.230.0/25 ip4:66.244.211.243 ip4:64.4.86.27 ip4:66.240.181.6 ip4:66.240.131.134 ip4:13.110.170.248/32 ip4:67.231.158.158 ip4:67.231.151.29 ip4:67.231.152.177 ip4:208.84.65.220 include:spf-003a7a01.pphosted.com include:servers.mcsv.net incl" "ude:spf.protection.outlook.com include:spffresh1.barobinson.com include:one.zoho.com -all
  • MS=ms69435164
  • ZOOM_verify_24n8EbySRPu5Mt_HHYtO7A
  • apple-domain-verification=yIZmd26SN68KHth8
  • atlassian-domain-verification=hE2OAg1buzm/TIclvjWS8qUPoIFachg8VR0EYZhyJdOh944l6WCW4ge0R2HXDos3
  • cisco-ci-domain-verification=63574baef36f2b533799a81126a30448c06238f60e20f912fcd1a0cad744e08e
  • google-site-verification=-B9HRuk9spt4CAlBmYSjg6bE1IcEXjEKkI3u_QF743o
  • google-site-verification=I5CmI1GsGRESTzoPFvSkbGKFOkRMcfBJXOk4ZffCdUQ
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Cisco Proofpoint Zoom

Leak Screenshot:

Leak Screenshot