Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Qilin
Discovered 2026-05-26 12:55 UTC
Est. attack date 2026-05-26
Country RU

Description:

N/A

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusenamecheap.com
MX Records
  • hamistergroup-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • MS=ms47549902
  • _globalsign-domain-verification=rJNDLJVchz7xjnNo3hoY090QuNjAX18MNSPHUTY7Z6
  • google-site-verification=99VN_UUC4re7BOW6U7H3ZcNY7e3V0c84gsKH9i59MEs
  • apple-domain-verification=9gccsJfonopxfLRG
  • b61cecd6-a3e8-4bdf-9a6d-be150747ef21
  • sophos-domain-verification=836d4bc2eb36a4ba3f78086bc6b9aaf9ce918ba0
  • sophos-domain-verification=310db2a5ba438cdc93f9047b4b7ee700f6fd38589a475fd33e70b9ea8b65ac6d
  • h0r4xh3954grwg65kf3cd1v2gxsqw8tj
  • v=spf1 mx a ip4:74.113.49.129 ip4:74.113.49.131 ip4:74.113.49.134 ip4:97.128.175.40 include:_spf.prod.hydra.sophos.com include:spf.protection.outlook.com include:spf.myconnectwise.net include:dayforcehcm.com include:dayforce.com -all
Cloud / SaaS Services Detected
Apple Global Sign Microsoft 365 Sophos

Leak Screenshot:

Leak Screenshot