Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Kentfield Hospital

Group: Worldleaks

Discovered by ransomware.live: 2025-07-21

Estimated attack date: 2025-06-13

Country: US

Description:

[AI generated] Kentfield Hospital is a long-term acute care and rehabilitation facility providing specialized care for patients recovering from serious illnesses, surgeries, and injuries. This includes treatment for conditions such as strokes, spinal cord and brain injuries, and respiratory and cardiac diseases. The hospital has locations in San Francisco and San Rafael in the U.S. state of California.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • kentfieldhospital-com.mail.protection.outlook.com.
TXT Records
  • D8vAde+gagUy6S21AxbeIwr5fcEW/P2S4TDegjx4ruQ71lKmcMASE4MwuS4bbq+LRfy/LRv0HdsdwEqChyGuBQ==
  • MS=ms90764027
  • docusign=01b91f85-fe9f-43b7-859c-616b37a7bfcf
  • knowbe4-site-verification=1b8f3af6fb2c714ea7176211ba5c2bd6
  • v=spf1 include:res.cisco.com include:spf.protection.outlook.com ip4:67.216.78.0/24 ip4:64.106.227.0/24 ip4:209.134.63.156 ~all
  • box-domain-verification=faecbb06b4d86077d6226e728f1feeab051e580ea19a5a982b6f3fdfc8887945
Cloud / SaaS Services Detected
Microsoft 365 Box KnowBe4 DocuSign

Leak Screenshot:

Leak Screenshot