Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo National Board of Osteopathic Medical Examiners

Group: karakurt

Discovered by ransomware.live: 2023-03-20

Estimated attack date: 2023-03-20

Description:

The National Board of Osteopathic Medical Examiners (NBOME) is an independent, nongovernmental, not-for-profit organization. Since their founding in 1934, they have been recognized for excellence in the national and international arenas of osteopathic physician testing and evaluation. NBOME produces a number of osteopathically distinct assessments and partner with other organizations on their assessment programs.



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx-01-us-west-2.prod.hydra.sophos.com.
  • mx-02-us-west-2.prod.hydra.sophos.com.
TXT Records
  • v=spf1 include:_spf_euwest1.prod.hydra.sophos.com a:id-usw2.prod.hydra.sophos.com include:spf.constantcontact.com include:mail.zendesk.com include:spf.protection.outlook.com ~all
  • google-site-verification=doaY1-RwBXrrBO9dFcMSPe_9NyyjV2dQ7UrAZ3Fwpts
  • MS=ms77415069
  • sophos-domain-verification=8b0a9692a9c2c83daa4e7ae98a5ca387ae0d536e
  • sophos-domain-verification=87c9ac0da76a88298b0aa04008d2c3de009ce7f2c51286565a764ea5282b2807
  • MS=ms65002033
  • v=DMARC1; p=none; rua=mailto:SystemsEngineering@nbome.org
  • duo_sso_verification=1vua6aTMC8gydrWiWbUZLBFcz6fbtbX1l0ki5OOKMRdAnawLF2JjOHAPPmOmTPs2
  • logmein-verification-code=d5dfcd1b-66ba-4d57-bade-eda3ddf16f30
  • cisco-ci-domain-verification=3419f5c82051a4db6b3907219930bf78599b231626a14703e6b7acdb1ccd62be
  • _y9dk36rgffpprhspxdffbhyhxqp7u99
  • have-i-been-pwned-verification=965f99e8cb905062e92c47fe3f077539
Cloud / SaaS Services Detected
Microsoft 365 Zendesk LogMeIn Cisco Cisco Duo Have I Been Pwned Sophos

Leak Screenshot:

Leak Screenshot