Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo McLaren Health Care Corporation

Group: alphv

Discovered by ransomware.live: 2023-10-04

Estimated attack date: 2023-10-04

Description:

DESCRIPTION


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 22

Compromised Users: 20

Third Party Employee Credentials: 13


External Attack Surface: 20



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-2.mimecast.com.
  • us-smtp-inbound-1.mimecast.com.
TXT Records
  • MS=ms32475681
  • apple-domain-verification=hu7KF8wHHdcC6eZKpACSbJxb1Qku3HcJ-RrxfYkleZ4
  • duo_sso_verification=g7viQotKZjV7z8k9DnqDBhp42lYDKzsJB3I5JLGVIHkTD3Qog6cMmPgzyzn9qo78
  • v=spf1 redirect=9ztwkaq5._spf._d.mim.ec
  • _6xhdy4hf4dgro80txic2389kjcvlkjx
  • google-gws-recovery-domain-verification=53802485
  • google-site-verification=52LzonFTSur1B5FfW8I31v9Xjn9pgLvSO3n-Acf4lQ0
Cloud / SaaS Services Detected
Apple Microsoft 365 Cisco Duo

Leak Screenshot:

Leak Screenshot