Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

TriMed Inc. (Henry Schein)

trimedortho.com

Group Lynx
Discovered 2025-10-02 19:36 UTC
Est. attack date 2025-10-02
Country US
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

Headquartered in Santa Clarita, California, TriMed is a leader in developing creative and clinically relevant surgical solutions that improve treatment in both the upper and lower extremities. In 2024, TriMed had net sales of approximately $58 million.

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • smtp.google.com. Google Workspace
  • aspmx2.googlemail.com. Google Workspace
  • aspmx.l.google.com. Google Workspace
  • aspmx3.googlemail.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
TXT Records
  • v=spf1 ip4:208.109.214.125 +a +mx +ip4:64.202.190.7 +ip4:10.217.20.62 +include:_spf.google.com +include:_spf.elasticemail.com ~all
  • google-site-verification=82-DuHGer_rvUraqPy4fLcP0iwLpFQZPzHSb3WpMfI8
  • google-site-verification=xaIox37O46SULeOAqPu0QFuN5qJp_32S8_dE7jvEXc0
  • v=spf1 a:host.secureserver.net ip4:125.214.109.208 include:_spf.google.com ~all
  • v=spf1 include:_spf.google.com ~all
  • v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDGBhnEfNNw0FBK7nmEVHOWiy3nxTRWgXsM5mKzjoCMaI+6yNyFjO+tlXOjymWWO4V8ucAln7EnB2XRAKOuVk2VYLmnEU2CjaaQS6jMUPaq5DvoU1pOWbB1N18Bs8zSh0WTUqYUTvWsCQuX7UOzDxpz8dCC/MVd2fToIFy1Eby5JwIDAQAB
  • v=spf1 ip4:125.214.109.208/16 include:_spf.google.com ~all
  • MS=D5B84286FF566A7C02FA91417DB1D53E1E7F19AE
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot