Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo starhealth.in

Group: ransomhub

Discovered by ransomware.live: 2024-10-19

Estimated attack date: 2024-10-19

Country: IN

Description:

Star Health and Allied Insurance Co. Ltd. is a leading health insurance provider in India, established in 2006. It specializes in health, personal accident, and overseas travel insurance. The company focuses on simplifying health insurance with a wide range of policies tailored to individuals, families, and businesses. Known for its strong customer service, Star Health offers cashless hospitalization across an extensive network of hospitals.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 257

Compromised Users: 9

Third Party Employee Credentials: 33


External Attack Surface: 129



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • reg_admin godaddy.com
MX Records
  • ciscoemgw2.starhealth.in.
  • ciscoemgw1.starhealth.in.
TXT Records
  • lsvf7lbs2fq2j6gi93ms2m2hk3
  • opu2GFpF9jKict5cW/BAxIRNR6K1upuYOzA+6GaS9Eq1pUtM+AJ0+lyGM5z4kE1wz7TpBACkW7vqZtKslj3Rrw==
  • facebook-domain-verification=3irduiijhi67xpb5xdescv2mtyptn2
  • ZOOM_verify_LOTOLvj7ScmY2YAlNdTahA
  • google-site-verification=R-vH64uRBPKHEvl8C_Gua4g8dgEq3-iRSCiya5Yizpk
  • v=spf1 include:_spf1.starhealth.in include:_spf2.starhealth.in -all
  • google-site-verification=ePU-lgiFJ4NsxkWk-oKHqT1qYro7msJEJAPc8oY4Eig
  • google-site-verification=oRC4udcqCXmqC9v6b8qSdgGx0IVho2f2CmN-rNMwC9A
  • google-site-verification=bJPJuImEHnTElf_bhxdzQs3JhjErUBfxVB7mhAh5oW0
  • 86vx967zz9h16x6r1sms0ll918c8w421
  • askf7vvqs3o07ng9vqpamljpm7vs
  • _gxxil4cliozwvv4ghkrskkzwzsi9oer
  • google-gws-recovery-domain-verification=48626690
  • b59fquj8822qsoo9vq6326cr0b
  • MS=ms69285413
  • atlassian-domain-verification=BM6G5XcND0KkQ49TLIoygcjV0W8vNqfZhL4npQwRwugCyW7/fExgUJ7W5/u3IFw1
  • llt834dur1lp0j8tlvi3td32v4
  • i9i7djnb1fstml072tu0ll91dq
Cloud / SaaS Services Detected
Atlassian Microsoft 365 Zoom

Leak Screenshot:

Leak Screenshot