Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Sophiahemmet University

Group: medusa

Discovered by ransomware.live: 2024-03-03

Estimated attack date: 2024-03-03

Country: SE

Description:

Sophiahemmet University - an academic university offering high-quality education and research in close cooperation with the Sophiahemmet Hospital since 1884. Located at Stockholm, Södermanland, 11486, SE


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 10

Compromised Users: 2

Third Party Employee Credentials: 0


External Attack Surface: 6



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • shh-se.mail.protection.outlook.com.
TXT Records
  • apple-domain-verification=phtMYSGu5BVzgVEC
  • facebook-domain-verification=y1eqjhue5068jmzdma4moxg0u8gcnz
  • ZOOM_verify_2cRVKLOVQmuKD-e22Lha0g
  • _bauz2q7yfgl9n3iq61psgaa5onv3xdi
  • _mp0dm1yl6u4lgeonbxah077dlfmhhwv
  • MS=ms87529102
  • _2z10tjsgmx180ij7iyiaz9j5f8uld9s
  • v=spf1 mx a a:smtp2.webadmin2.net a:kiwi.pingpong.net a:epost.activecloud.se ip4:194.103.237.50 include:spf.protection.outlook.com include:_spf.ilait.net -all
  • adobe-idp-site-verification=9228c402fe19a25782f717dd76bde62b1f0b7182b8b988a3ceeede52a63ec7ce
  • _jl7jsz263bn7za56nunxb9m9j7o6usb
  • google-site-verification=ypHE27qpymh2xuj_0x_WmVDYZrMsQuUmOnf6b5gZ6hE
  • google-site-verification=0LCVUGJJdnSr-5WUNS1OPCtvUqPUJ6Qu4U-cTU-5POA
  • _zoqfnffxgoc99mnclryvqljt06bfdct
Cloud / SaaS Services Detected
Adobe Apple Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot