Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Ann & Robert H. Lurie Children's Hospital of Chicago

Group: rhysida

Discovered by ransomware.live: 2024-02-27

Estimated attack date: 2024-02-27

Country: US

Description:

Ann & Robert H. Lurie Children's Hospital of Chicago Ann & Robert H. Lurie Children's Hospital of Chicago provides superior pediatric care in a setting that offers the latest benefits and innovations in medical technology, research and family-friendly design.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 6

Compromised Users: 56

Third Party Employee Credentials: 3


External Attack Surface: 33



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mxb-00347801.gslb.pphosted.com.
  • mxa-00347801.gslb.pphosted.com.
TXT Records
  • airtable-verification=5e6b321e91f613110a095f30eaeb6293
  • infoblox-domain-mastery=83cd3c44a0af96174acf1fa8a88142de039976d0fe5159cbf58d702df7be955e21
  • atlassian-domain-verification=f5/ekssyWm5jfKhhvO6WuDMWW4nnPxOd7XW6L2qKIQ2/fIVE7AAD0wHp71596CPB
  • Vf+IaSeSrd8m6ObN2oe29QzFuCFkFOdNaA2ZaK7smYWvVBfT/pNTgoTb6Rxq8MsFH66DJqAH4p+uiTVK5QE5rw==
  • adobe-idp-site-verification=63658d7849f5461a4654e6b435b0a04ec311e745614618703cd0a5ac6d1f292b
  • TsHNOOYwxI_IJ8y0uY3_
  • v=spf1 include:luriechildrens.org._nspf.vali.email include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:spf-00347801.pphosted.com include:spf-00347802.pphosted.com include:sendgrid.net ~all
  • SM9-jRNV7sAx_WGhlZ8l
  • Google-site-verification=ACaF4FCk_3fPY0_Waw8yFuVYZbkXOeK5ukWGvzpsg2M
  • globalsign-domain-verification=827B2DE194D1038AFEBFCBBC98DC5C7D
  • apple-domain-verification=dmSYsPpJQl8Ytfot
  • google-gws-recovery-domain-verification=52425759
  • airtable-verification=0f1b80b55107d47fab97a2ef24b3db13
  • globalsign-domain-verification=1AB2D5E495BF4FC5DFFC6D39753224E0
  • docker-verification=cb76cf40-4a80-46fa-812b-35497fe50719
Cloud / SaaS Services Detected
Adobe Apple Atlassian SendGrid Proofpoint