Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo American Hospital Dubai

Group: Gunra

Discovered by ransomware.live: 2025-06-05

Estimated attack date: 2025-06-05

Country: AE

Description:

Healthcare Service


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 26

Third Party Employee Credentials: 28


External Attack Surface: 16


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • emailsecurity.ahdubai.com.
  • ahdubai-com.mail.protection.outlook.com.
TXT Records
  • MS=B676B22BEE16903C3A43D96C275BCB4AC30B8981
  • MS=ms31450499
  • ZOOM_verify_UBIcVUMhQ1IiaUtP6olgw4
  • _65johnx6ewkn4cyfeq34zy7ajoxmakb
  • amazonses:rhRJYMn2FsFThEU43GoHPWQcxlVAKT2SHkB7o5q8xUE=
  • bOryXou4oCPcrRU+MtCi1UmEWPSuYpM+Ddsao/3mtL/RcTJ/Jj6uNOKnMX8JUsFBIlwZR7mGojr6oHSB27Vwwg==
  • google-site-verification=5H2i-mREEpHt1S3Pn6Xse5ueI_dc8j51soophLcuopA
  • tmes=25687f04bb169e398718c377b495e0a2
  • v=spf1 a mx include:spf.protection.outlook.com include:_spf.salesforce.com include:servers.mcsv.net include:amazonses.com include:eu.rp.oracleemaildelivery.com include:spf.zohomail360.com ~all
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Salesforce Zoom

Leak Screenshot:

Leak Screenshot