Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo City of Buckeye (buckeyeaz.gov)

Group: incransom

Discovered by ransomware.live: 2024-05-07

Estimated attack date: 2024-05-01

Country: US

Description:

Midwest Covenant Home, Inc., located in Stromsburg, Nebraska, offers a senior living campus which encompasses independent living apartments, assisted living units and a skilled nursing facility. Our organization values our elders and promotes the quality of their lives through the gracious environment surrounding the grounds. Adopting the Eden philosophy, Midwest Covenant Home upholds abolishing the three plagues of the elderly, loneliness, helplessness and boredom. Each resident's spiritual life is enhanced by our involvement with the local clergy to meet the individual resident's spiritual needs. We are active members of the Nebraska Health Care Association. Midwest Covenant Home is a registered Eden Alternative facility. One recent family member commented, "You have a very caring staff here."



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • nstraabe buckeyeaz.gov
MX Records
  • buckeyeaz-gov.mail.protection.outlook.com.
TXT Records
  • jc02m9d09k5a1k1jee0mlb5fl8
  • have-i-been-pwned-verification=16f4ccf677d1f8c636d2aef07ba24dd5
  • 9b95uvu6gapit16g037iodeolm
  • apple-domain-verification=ErvkpQl8feIo6d9R
  • qm9u52n5f18jpmll85no3p21fa
  • MS=ms74051424
  • v=spf1 include:spf.protection.outlook.com include:amazonses.com include:spf.mailjet.com include:mailgun.org include:smtp.iii.com ip4:70.166.221.51 ~all
  • buckeyeaz.gov
  • canva-site-verification=Pg6l8TkkCs57NP7BFrDz4Q
  • jrv840e4mgnhm5p346glgdse0p
  • fqk6ov82ee4lusdrin0ebmplde
  • mnloau6qakb4n59vt3425g9rb7
  • 4e6ur7ubcg1qguviebd1r9q5q2
  • 86mmtl258vrkc091fqsfjlndf1
  • o3f1pcqpvll3ncrflnqcvermlb
  • 6dh0ohvg970gns4cpfmsis0gf4
  • 3du4968vbk1p29v9q2tq8h2eck
  • GyRRm6wN4Q009nCDkzX2YGG69sJOzkH3w7pGr8gAQXw1xD1iegyunUyJeWT/mAV+nN/fghenc8703/Swj1pHHA==
Cloud / SaaS Services Detected
Apple Amazon SES/WorkMail Microsoft 365 Mailgun Mailjet Have I Been Pwned

Leak Screenshot:

Leak Screenshot