Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo apollohospitals.com

Group: Killsec

Discovered by ransomware.live: 2024-10-20

Estimated attack date: 2024-10-20

Country: IN

Description:

Apollo Hospitals is one of India's leading healthcare institutions, offering world-class medical services across multiple specialties.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 3

Compromised Users: 94

Third Party Employee Credentials: 58


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • ganeshraj_n@apollohospitals.com
  • abuse-contact@publicdomainregistry.com
MX Records
  • apollohospitals-com.mail.protection.outlook.com.
TXT Records
  • MS=ms18797264
  • MS=ms51702471
  • gk/QHzme+0siEhjXMPbVno1GhqpCxWZAawKGR53iT/0RamFI2/H+JNTytqkKo3hrsV0gh0lpccyA+dyhJE/nXQ==
  • google-gws-recovery-domain-verification=63331921
  • google-gws-recovery-domain-verification=63947953
  • google-site-verification=-FUr-PXAtE2IARJJBSN0WwNOL5oJQPIzrCw68hgPooo
  • ms-domain-verification=1d7162dd-3bdc-4809-91eb-d4caf4244c0e
  • ms-domain-verification=94892614-a344-4f2c-a9df-313df4707a08
  • ms-domain-verification=a1a75622-b26d-4965-93f9-a966fbbdff2a
  • v=spf1 +mx +a +ip4:59.144.176.134/30 +ip4:14.143.223.242/30 +include:spf_c.oraclecloud.com include:spf.protection.outlook.com -all
  • vrc318rfa5383dasjlcs9jg71c
  • MS=ms12637134
Cloud / SaaS Services Detected
Microsoft 365 Oracle Cloud

Leak Screenshot:

Leak Screenshot