Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo inforius

Group: Qilin

Discovered by ransomware.live: 2024-05-07

Estimated attack date: 2024-04-30

Country: BE

Description:

Created in 2009 by Guy Wauthier and Laurent Mimmo, it now has 50 employees. With different types of profiles (developers, consultants, system and network engineers, helpdesk and administrative employees, etc.), it has extended its field of sk ...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 0

Third Party Employee Credentials: 0


External Attack Surface: 3



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • d333140.a.ess.de.barracudanetworks.com.
  • d333140.b.ess.de.barracudanetworks.com.
TXT Records
  • MS=0460807032719AA771BDD8C41302D860F9FE3772
  • MS=ms21085937
  • atlassian-domain-verification=K31aOK7UKdyIItaNzsUv1SsRz4AfwX3nh0ovQrw8AwRFmi9MUlWSVjWESZ4HdVZE
  • v=spf1 ip4:86.107.124.230 ip4:86.107.124.244 ip4:37.19.8.1 include:spf.mailjet.com include:spf.protection.outlook.com include:spf.ess.de.barracudanetworks.com -all
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Mailjet

Leak Screenshot:

Leak Screenshot