Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Devereux Advanced Behavioral Health

Group: Thegentlemen

Discovered by ransomware.live: 2025-11-28

Estimated attack date: 2025-11-28

Country: US

Description:

www.devereux.org https://www.zoominfo.com/c/the-devereux-foundation/60082215 Devereux Advanced Behavioral Health, headquartered in Villanova, Pennsylvania, is a behavioral healthcare organization that operates a network of clinical, therapeutic, educational, and employment programs.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 16

Compromised Users: 20

Third Party Employee Credentials: 17


External Attack Surface: 53


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse godaddy.com
MX Records
  • devereux-org.mail.protection.outlook.com.
TXT Records
  • _f9mrip7bx7lj82qmjef6869659dyw49
  • apple-domain-verification=HqWngVXfRYSg6ni7
  • google-site-verification=7wasw4BGSqpFBB3u26UXD1gPmue-7bCHQuREFhArRSE
  • MS=ms57115799
  • docusign=77e3c16e-cc31-4ce5-be19-121f707b18fd
  • _pofjzdnmlebyvob4fscutm0kqfzijsa
  • s3mk2pu9cgbev70kfr315blmf6
  • MS=ms85601619
  • dropbox-domain-verification=0qxmh8wff2z9
  • 2mprh29ok1fj1nlcc74gtphc68
  • apple-domain-verification=eXePVoA5YfdR1VUl
  • bkdjk4h6hu64d7rfgaprsp4quo
  • vh8b6bve94cfrnn5gdj1bo3v6b
  • knowbe4-site-verification=a4db8c62074550e637c01527a519a19a
  • v=spf1 ip4:204.52.95.0/24 ip4:141.123.120.32/28 ip4:141.123.220.32/28 include:spf.protection.outlook.com include:spf.constantcontact.com include:outboundmail.blackbaud.net include:_spf.psm.knowbe4.com include:zcsend.net a:mailers.apptoto.com -all
  • ZOOM_verify_dzq3rF2XQSCdADmwCGsWNw
Cloud / SaaS Services Detected
Apple Dropbox Microsoft 365 Box KnowBe4 DocuSign Zoom

Leak Screenshot:

Leak Screenshot