Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Hermes Medical Solutions

Group: bianlian

Discovered by ransomware.live: 2023-05-11

Estimated attack date: 2023-05-11

Description:

HMS delivers a complete Molecular Imaging Software Suite to visualize, process, analyze, report and archive imaging data from multiple modalities and devices.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse abion.com
MX Records
  • hermesmedical-com.mail.protection.outlook.com.
TXT Records
  • _f9m9y5tmq0cau352fhjuxytbcw5a1l6
  • pardot945883=56f238e7a4ee2aae17b898d947da5fb594523109b87712cce9db5a02f8820028
  • _wjtafs0bahp5nw6iufp1jhfy57c3ffm
  • nws6kc264yr8k5slnr5rh694sy9vkvpx
  • qfqy64pxrjbmccjvhqj08ycvstrh4f9p
  • zfrrb9cyczjb73p73fbbw6t9ct8ypr06
  • g8pjdtrkpbrj9194rxyr2rj7j96fmcy2
  • 201903141046044ynoz88ck2opakq6ijld7wu9hyutdzmoslmz9l54zrl8qtv98x
  • _s4kyc9n5oghkut1ppz7pmepsfgfa7dt
  • _alvuf40z24ffgqukba293jhu1yf073c
  • 54bxc245vwwb5685wnmb26f9dxnp5dtr
  • _cg2ahedt96phozwvgo1r6pwrc7bax54
  • _qiiu8a7sg0nr31q3bxgepkssxou12o5
  • qjzppgnpd2ms1x7bpdg7lt3t1h0tl7gh
  • hp5jcqc6n2jyl4qwgcmstx8xczdhx2fc
  • lzqfvxmtybvkgbgd7lq4nnjnm7m24p5c
  • _077homcnwwc7rbl9pjbopfdf0vkyx3j
  • 2017101211050354k4q4q3dbgfmjycb3g3a8j21sps9djuq2utdtqbeabssrka7a
  • _wgzo142mosgd7qq77jhgzpllfe2m6e5
  • v=spf1 mx ip4:12.9.139.112 ip4:208.71.10.58 ip4:12.9.139.113 ip4:12.9.139.111 include:_spf.salesforce.com include:aspmx.pardot.com include:spf.protection.outlook.com include:_spfh.devcore.se include:_spf.psm.knowbe4.com -all
  • nm34h6lktx335nymql8gtx187lzv03r7
  • 4039w8ft0ddh024jxplhwc6tcqd193wf
  • v77l5k6zkh4ryx1nnkjtw5c0bh6hw3hq
  • csjmq2cs0wm02fjp4rb9ny55ds6t8l6r
  • qcfcb97c96j50myz2wvfhm5ffl7424tq
  • MS=ms21882226
Cloud / SaaS Services Detected
Microsoft 365 Salesforce KnowBe4

Leak Screenshot:

Leak Screenshot