Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo CentroMed

Group: karakurt

Discovered by ransomware.live: 2023-06-28

Estimated attack date: 2023-06-28

Description:

El Centro del Barrio (CDB), which started doing business as CentroMed in 2001, was founded in 1971 and ran one counseling program for children and adolescents. They lost 25 GB of their data, which contains several thousand ssns and other medical and health information. Accounting, financial, human resources data is also represented.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namecheap.com
  • 8e1e7e4d1aa74eb6a5a79353dfe8fa4f.protect withheldforprivacy.com
MX Records
  • d341728b.ess.barracudanetworks.com.
  • d341728a.ess.barracudanetworks.com.
  • centromedsa-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 a:centromedsa.com ip4:97.79.185.226 ip4:97.79.185.229 include:spf.protection.outlook.com include:spf.ess.barracudanetworks.com include:spf.easywp.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot