Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Prospect Medical Holdings

Group: rhysida

Discovered by ransomware.live: 2023-08-24

Estimated attack date: 2023-08-24

Description:

Prospect Medical Holdings



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse namecheap.com
  • 0e39fd4613c746b5a0c28d10b3f32e80.protect withheldforprivacy.com
MX Records
  • pmh-com.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:apttus.pmh.com include:spf_c.oraclecloud.com include:spf_a.oraclecloud.com
Cloud / SaaS Services Detected
Oracle Cloud