Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo eclinicalsol.com

Group: cactus

Discovered by ransomware.live: 2024-03-18

Estimated attack date: 2024-03-18

Country: US

Description:

Download link #1:  https://***************.onion/ECS/PROOF/Mirror: https://cactus5dqnqkppa5ayckiyk6dttpqwczdqphv5mxh4dkk5ct544q5aad.onion/ECS/PROOFDATA DESCRIPTIONS: Thousands of customer data: drug tests, clinical studies and reports, analytical data, corporate correspondence, etc. Database exports. 



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • trustandsafety support.aws.com
  • rmoy eclinicalsol.com
MX Records
  • eclinicalsol-com.mail.protection.outlook.com.
TXT Records
  • adobe-sign-verification= adobe-sign-verification=87a0b77eff3aa1b94778e9007301bb8b
  • google-site-verification=S9o2cNnqGp0ez2s1fSZiiifZWwJL8wC-dD26wtlfnTw
  • openai-domain-verification=dv-S30tjH9FRGnZnwi8S44RoZdk
  • v=spf1 mx ip4:34.197.226.191 include:_spf.google.com include:aspmx.pardot.com include:spf.protection.outlook.com include:mail.zendesk.com ~all
  • 1fu5ko8kcl9nc9bivgc8u5bb47
  • MS=ms80584367
  • ZOOM_verify_PzHN14IAT72tB6TGRdBZ6Q
  • adobe-idp-site-verification=71b24c9e0d2f616a26f186316873d10cf64b2ad5b26bd1a3afd7f59850ae5c17
Cloud / SaaS Services Detected
Adobe Microsoft 365 Zendesk Zoom

Leak Screenshot:

Leak Screenshot