Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

moph.gov.lb

moph.gov.lb

Group Funksec
Discovered 2024-12-30 12:12 UTC
Est. attack date 2024-12-30
Country LB

Description:

[AI generated] The company "moph.gov.lb" refers to the Ministry of Public Health in Lebanon. It is a governmental body responsible for public health policy, healthcare services, and health regulations in Lebanon. The ministry oversees hospitals, healthcare facilities, and public health programs, aiming to improve health standards and provide accessible healthcare to the Lebanese population.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 557

Third Party Employee Credentials: 1


External Attack Surface: 99


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuseidm.net.lb
  • LABOUMRADMOPH.GOV.LB
  • domlbidm.net.lb
MX Records
  • mail.moph.gov.lb.
TXT Records
  • v=DMARC1; p=none;
  • v=spf1 +ip4:213.227.143.45 +ip4:82.146.160.48/28 +ip4:82.146.160.32/27 +ip4:40.114.121.56 +ip4:194.126.4.64/27 +ip4:194.126.4.56/29 +ip4:93.185.92.0/28 +ip4:193.227.188.250/30 +include:spf.protection.outlook.com -all
  • MS=ms40931850
  • MS=ms76920275
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot