Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Vanderbilt University Medical Center

Group: meow

Discovered by ransomware.live: 2023-11-24

Estimated attack date: 2023-11-18

Description:

100% LEAKED



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • vumc-org.mail.protection.outlook.com.
TXT Records
  • e2ma-verification=aiofb
  • n5kkw337pmns5cx7srytgr7jwjkvf42h
  • e2ma-verification=rfsgb
  • e2ma-verification=lgsbb
  • adobe-idp-site-verification=288f87096af026f73b361e16fd29698828e0eea2db2ae6e366aaba8fe054b58c
  • e2ma-verification=yasgb
  • e2ma-verification=dhfgb
  • e2ma-verification=9icfb
  • e2ma-verification=vhgcb
  • s2zpx61rh3z6kvxt3k83gz36d0bq4ynh
  • e2ma-verification=j6xeb
  • e2ma-verification=ys6
  • e2ma-verification=iixfb
  • e2ma-verification=93dcb
  • e2ma-verification=bdh
  • e2ma-verification=v3yeb
  • e2ma-verification=56fgb
  • e2ma-verification=0ancb
  • e2ma-verification=s1rcb
  • e2ma-verification=apjfb
  • airtable-verification=8c427265ffa55a06ca7e277056f93208
  • google-site-verification=xr-u-h3ZFFgiHRLhf8ZqKaq8s673cG1oWS6QCzDbS-s
  • e2ma-verification=c4gbb
  • q65BTbPnWaQ52Ur2dfUT0-n3CgiEmiYpwgjJaIBysWk
  • ZOOM_verify_kBA7ooSPT7KwLun21U7Bw
  • e2ma-verification=wb5fb
  • e2ma-verification=tgdcb
  • e2ma-verification=gyqgb
  • e2ma-verification=2mrgb
  • _iwcem2ubj1bkgtm99d60j8cuf0ekrpt
  • OgrQFIDdWYA21I3DokHBdr1HNgfeUCcg+zrL/F/lfyqr8FGMJAap7tUGesfw8TfN47O6ftEbP+C0DWX4g+DOZA==
  • e2ma-verification=gpy
  • e2ma-verification=kcffb
  • e2ma-verification=19j
  • e2ma-verification=3l6eb
  • e2ma-verification=tnmgb
  • 5qw126kj2g4st5t0d9ng104x5qnyy2hk
  • e2ma-verification=yz4
  • e2ma-verification=qxcgb
  • e2ma-verification=89pgb
  • atlassian-domain-verification=ifIVWr3TmQzZEg35R/1QorQDRZAsvfMRpNJoozb3UWIpaJMWciBcHnA6doSeE9pg
  • e2ma-verification=d0kbb
  • j1mglb4gvmych8w9fw74hj9j8hzb212t
  • e2ma-verification=44g
  • 5nd3wsztzt8gy56bk7j8zj8bt07s2vv4
  • google-site-verification=mx_TRwhR8AzxEu9OdZ3sud67tGuyl8aqT51AKdnKvb8
  • mgverify=520e8657aca3d20f02da1fdee38f8646036815230c4b035fd8b7b5befdb27bb7
  • google-gws-recovery-domain-verification=39930024
  • e2ma-verification=fiegb
  • 'pm-bounces';" "Value:" "'pm.mtasv.net'
  • _0t2stj66xpxpg9dv38y6blwrnzcib8s
  • e2ma-verification=cg2ab
  • e2ma-verification=1krgb
  • smartsheet-site-validation=3TnB4dv1rG_OTtexQDqVWMSqgmndTxDC
  • e2ma-verification=br0fb
  • e2ma-verification=0utab
  • e2ma-verification=nnf4
  • e2ma-verification=ng5
  • e2ma-verification=bwwbb
  • e2ma-verification=vssfb
  • e2ma-verification=rdh
  • e2ma-verification=1mkfb
  • e2ma-verification=yjbfb
  • e2ma-verification=b0lfb
  • e2ma-verification=o2zfb
  • e2ma-verification=avbfb
  • e2ma-verification=ez4
  • e2ma-verification=295
  • e2ma-verification=y2ucb
  • e2ma-verification=in1bb
  • 288f87096af026f73b361e16fd29698828e0eea2db2ae6e366aaba8fe054b58c
  • e2ma-verification=p7sgb
  • e2ma-verification=vixeb
  • e2ma-verification=b8sgb
  • e2ma-verification=0gngb
  • qwMmatfFQvy-mXBo3644bWK7UvAkDMK2ZeNmDwH_bP4
  • paloaltonetworks-site-verification=416754bd76c4f266858282672f7b15789a75c86d5624d87f12e84c211cce8548
  • e2ma-verification=9p3eb
  • e2ma-verification=hjteb
  • e2ma-verification=pn0fb
  • ZOOM_verify_c6kM67bKT5Wxu9FEguPxwg
  • e2ma-verification=r7sgb
  • e2ma-verification=sdh
  • e2ma-verification=2csbb
  • e2ma-verification=o2agb
  • ZOOM_verify_Ju74mmkLRGmSB4llL1Qcdw
  • MS=ms90429347
  • apple-domain-verification=KUBhGmKrxUABDKC9
  • e2ma-verification=0qwcb
  • v=spf1 include:%{i}._ip.%{h}._ehlo.%{d}._spf.vali.email include:_spf.e2ma.net ~all
  • ciscocidomainverification=49079e5c6018f671a4dae1de64bd25fe82ee9b2bc4a15ca44b349ff1eb5ab0e7
  • teamviewer-sso-verification=2587fa2ccabe4a25b1840a3466549de1
Cloud / SaaS Services Detected
Adobe Apple Atlassian Microsoft 365 Teamviewer Zoom

Leak Screenshot:

Leak Screenshot