Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo EXCELAS1.COM

Group: Clop

Discovered by ransomware.live: 2026-01-25

Estimated attack date: 2026-01-25

Country: US

Description:

[AI generated] Excelas1.com, also known as Excelas LLC, is a medical legal solutions company based in Cleveland, Ohio. They offer thorough medical record analysis and organization services to assist in complex medical-legal cases. Their specialized services aid attorneys, insurance companies, and healthcare establishments in making decisions. Their team of experienced professionals provides services such as Case Intake Triage, Medical Record Retrieval, and Chronology Creation among others.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • mx1-us1.ppe-hosted.com.
  • mx2-us1.ppe-hosted.com.
TXT Records
  • v=spf1 a:dispatch-us.ppe-hosted.com include:spf.protection.outlook.com -all
  • _globalsign-domain-verification=VAgNtzxq-LZR8zi0np6S0QDvy0EMSO7yzQt4ApfLNH
  • _globalsign-domain-verification=J6-WUn3Jw2LVn1-pPRQapvEy0z8S4gViVIx3LmfQVH
  • MS=ms77949719
  • globalsign-domain-verification=146080f4568b089c0c22b553dd3efa1a
  • 2n7skpd511dl9me9leugoh0pgb
  • ppe-275e04b2a980490862a7
Cloud / SaaS Services Detected
Microsoft 365 Proofpoint Essentials

Leak Screenshot:

Leak Screenshot