Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Fortis

Group: killsec

Discovered by ransomware.live: 2024-10-28

Estimated attack date: 2024-10-28

Country: IN

Description:

N/A


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 26

Compromised Users: 68

Third Party Employee Credentials: 33


External Attack Surface: 21



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-contact publicdomainregistry.com
  • fortisdomain fortishealthcare.com
MX Records
  • fortishealthcare-com.mail.protection.outlook.com.
TXT Records
  • ms-domain-verification=70b4ff1e-f6f3-4a4c-b29f-d8f7254c82e3
  • v=spf1 ip4:20.188.108.94 ip4:104.211.75.118 include:spf.protection.outlook.com include:spf_c.oraclecloud.com include:ncfp.asia include:spfa.cpmails.com ~all
  • AJO2gR2EmduIuQ3jICGag5/STBaJeXRPMWxxVxGIYUs=
  • EPg1msEP8pwsJKEjp0HNH3nz7UC0Y3sVbnGzHLcZWGc=
  • MS=ms71951610
  • MS=ms77346655
  • google-site-verification=1FIHHQ79Ng0APoJHJWEdP-mmZYzKgO1rSZ_-Ib1U8n8
Cloud / SaaS Services Detected
Microsoft 365 Oracle Cloud

Leak Screenshot:

Leak Screenshot