Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Office Of The Registrar Of Political Parties

Group: Qilin

Discovered by ransomware.live: 2025-09-14

Estimated attack date: 2025-09-14

Country: KE

Description:

The Office of the Registrar of Political Parties (ORPP) is a state office in Kenya responsible for the registration, regulation, and funding of political parties as mandated by the Constitution and the Political Parties Act. It aims to promot ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 147

Third Party Employee Credentials: 2


External Attack Surface: 18


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • customercare@vilcom.co.ke
MX Records
  • mail.orpp.or.ke.
TXT Records
  • v=spf1 a mx ip4:102.216.155.235 ip4:102.210.30.155 ~all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot