Group:
Medusa
Discovered by ransomware.live: 2024-11-25
Estimated attack date:
2024-11-25
Country:
Description:
Kela Health (founded 1941) - the developer and manufacturer of pharmaceuticals and food additives in the field of global health of animals, as well as develops and produces a limited series of pharmaceuticals and food additives for people. Kela Health corporate office is located in 48 Sint-lenaartseweg, Hoogstraten, Antwerpen 2320, BE.
DNS Records:
The following DNS records were found for the victim's domain.
- nBxj4Qu8TwDIGaJRlAJgbRD4EVCQNezeCujXWFx1uzao1iBTRhKpAl1mF0yxuR7MnNDbWWfP3uB4I1ngf0T0FQ==
- 6oy15g1LCDphyKdodfHXCXOkHr5SWQ/6jG3+o/JXnraj/c9uu2d1lpKFfVI+iXhaFFfBfFY98dV1VZkF1u4WjQ==
- facebook-domain-verification=xlj8a2pcos80drejku3v94ya755hl8
- v=spf1 mx a ip4:194.78.110.204 a:mail.kela.be include:spf.protection.outlook.com include:spf.mailcamp.nl include:cust-spf.exacttarget.com include:_spf.salesforce.com ip4:93.94.105.142 -all
- 4tVXHoLTDlznPQ6sabHjLidNvYMJIcrfC4vYEY1p+j48gvlFiS7cSw0ITYWy8xCuAj73bMiL98mNUfieDvRZOw==
- google-site-verification=npk3INpMAjjPoKWdNXYluYz5yMIA66EOhundpSdkmp0
- docusign=f79f8f67-62e3-494d-a864-1bc5823aec43
- u1dLo2aHauEntGnHLdUP+w7TkLS6qbVvg2LmtUXxUk4=
- brevo-code:3ac138663295294ba4e9ef01688ce543
Cloud / SaaS Services Detected
Salesforce
DocuSign
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.