Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo Unimed Anápolis

Group: Thegentlemen

Discovered by ransomware.live: 2026-01-21

Estimated attack date: 2026-01-20

Country: BR

Description:

Unimed as a whole is a physician-owned healthcare and health insurance cooperative in Brazil, one of the largest of its kind in the world, operating through many regional cooperatives and serving millions of beneficiaries with managed healthcare services. Unimed Anápolis is part of Unimed, a large Brazilian medical cooperative and health insurance provider. It offers a variety of healthcare plans tailored to people and companies in the region, giving members access to a broad network of affiliated doctors, hospitals, and medical services. The plans are designed to meet different needs and include coverage through a wide accredited healthcare network unimedanapolis.com.br


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 37

Third Party Employee Credentials: 18


External Attack Surface: 15


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • unimedanapolis-com-br.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
No well-known cloud or SaaS service detected.

Leak Screenshot:

Leak Screenshot