Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

mcna.net

mcna.net

Discovered 2023-03-27 05:08 UTC
Est. attack date 2023-03-27
Duplicate Entry
This victim has been identified as a duplicate of another entry in our database. However, this may not always be the case: the same organization can be targeted multiple times by the same or different ransomware groups, which may result in separate legitimate entries. Search for related entries

Description:

MCNA Dental (MCNA Insurance Company and Managed Care of North America, Inc.) is a leading dental benefits manager committed to providing high quality services to state agencies and managed care organizations for their Medicaid, Children's Health Insu...

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 263

Third Party Employee Credentials: 5


External Attack Surface: 21


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domainabusecscglobal.com
MX Records
  • mxb-0077b904.gslb.pphosted.com. Proofpoint
  • mxa-0077b904.gslb.pphosted.com. Proofpoint
TXT Records
  • airtable-verification=399cd3beff0269114abffd5352d2920c
  • smartsheet-site-validation=G6B4tFNdPpJLrwXZuLpRwX_iNL__qNwp
  • v=spf1 ip4:50.16.230.67 ip4:8.47.7.3 ip4:96.91.79.10 ip4:72.46.51.62 include:_spf.google.com include:spf1.worldapp.com include:_spfv4.corpmailsvcs.com -all
  • c4b9a65a-66df-4c8a-bd06-bd701c13602e
  • jerjo4o5jhioup469r1k6vd05k
  • google-site-verification=W-QyO52dJjIs4HFQAE0Xzhb7y60vZ4LMfVRIWZiomZ8
  • openai-domain-verification=dv-Z66amxkbT9p8ail4k2oPlxHV
  • figma-domain-verification=46dceba591b185fee0bd4e8abfd474592f326b656c7cda73e0989b5c95b4c7b0-1756929924
  • adobe-idp-site-verification=9a5c47599b4f379d5e29ede339f3da7f9e1689f8e16709c98e397c86a1c68122
  • duo_sso_verification=tUMIAJQBXEvCMdyLQ0rycGLL4hRugyuMBTdXFUdi4drPLrv9pucOVZolRkBJZIDO
  • MS=ms58934004
  • citrix.mobile.ads.otp=8f3zs6ti8jkzv7lg2pox5b
Cloud / SaaS Services Detected
Adobe Microsoft 365 OpenIA Cisco Duo Proofpoint

Leak Screenshot:

Leak Screenshot