Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Concord Orthopaedics

Group: everest

Discovered by ransomware.live: 2024-11-24

Estimated attack date: 2024-11-24

Country: US

Description:

Medical records and personal data of all patients from 2018 More than 30,000 identity documents https://www.concordortho.com/ Company representative should follow the instructions to contact us before time runs out


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 0


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse melbourneit.com.au
  • support melbourneit.au
MX Records
  • concordortho-com.mail.protection.outlook.com.
TXT Records
  • coqn287aare6f5b65bl47t40ps
  • tlk5suljvuamjh3e3qdt8em35s
  • v=spf1 include:amazonses.com a:mx04-000c8f01.pphosted.com a:mx05-000c8f01.pphosted.com include:spf.protection.outlook.com ~all
  • _877htir6gh63jmf7wzp1dnm4d3xp865
  • MS=F424C22910A0DCDBEAC58417080F45EFA67AB348
  • kh4otaiqlekrqkmsidvu5irna9
  • MS=ms92238602
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Proofpoint

Leak Screenshot:

Leak Screenshot