Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo mclaren health care

Group: alphv

Discovered by ransomware.live: 2023-09-29

Estimated attack date: 2023-09-29

Description:

/


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 22

Compromised Users: 20

Third Party Employee Credentials: 13


External Attack Surface: 20



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • us-smtp-inbound-1.mimecast.com.
  • us-smtp-inbound-2.mimecast.com.
TXT Records
  • google-site-verification=52LzonFTSur1B5FfW8I31v9Xjn9pgLvSO3n-Acf4lQ0
  • v=spf1 redirect=9ztwkaq5._spf._d.mim.ec
  • google-gws-recovery-domain-verification=53802485
  • apple-domain-verification=hu7KF8wHHdcC6eZKpACSbJxb1Qku3HcJ-RrxfYkleZ4
  • MS=ms32475681
  • duo_sso_verification=g7viQotKZjV7z8k9DnqDBhp42lYDKzsJB3I5JLGVIHkTD3Qog6cMmPgzyzn9qo78
  • _6xhdy4hf4dgro80txic2389kjcvlkjx
Cloud / SaaS Services Detected
Apple Microsoft 365 Cisco Duo

Leak Screenshot:

Leak Screenshot