Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Maryhaven (MHCLINICAL.LOCAL)

Group: incransom

Discovered by ransomware.live: 2024-06-22

Estimated attack date: 2024-06-13

Description:

An active partner in the Franklin County & Central Ohio community for more than six decades, we have served over 227,000 people to date. Maryhaven provides a comprehensive continuum of services from sub-acute hospital detoxification; to adult residential, intensive outpatient, and aftercare; to family treatment; to extended care for women; to residential and outpatient services for teens; to a residential OVI Program (MESA); to outpatient safety programs for adults and adolescents.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • d240661a.ess.barracudanetworks.com.
  • d240661b.ess.barracudanetworks.com.
TXT Records
  • google-gws-recovery-domain-verification=50037544
  • google-gws-recovery-domain-verification=50040279
  • google-site-verification=_1XvPtbya-14LzSpYaHqwQGSPHWB2E9FGW8LneLOFCI
  • google-site-verification=sLwzpG6qT9-IB8AKhbJo-R-wfQKQ4NwlZvhC3Pm6W3s
  • id7m60rv2ntmi2kq70dh3ab3pd
  • v=spf1 include:spf.protection.outlook.com include:res.cisco.com include:spf.ess.barracudanetworks.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot