Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo www.colonialbh.org

Group: Qilin

Discovered by ransomware.live: 2024-11-05

Estimated attack date: 2024-05-30

Country: US

Description:

Colonial Behavioral Health, is the local Community Services Board serving the citizens of James City County, the City of Poquoson, the City of Williamsburg and York County. It's mission is to facilitate recovery and resiliency of individuals ...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • d153409a.ess.barracudanetworks.com.
  • d153409b.ess.barracudanetworks.com.
TXT Records
  • MS=ms94332227
  • nOuMHqbdNGxL4BRTmOIrb3+O1STJtHKy4g1+nxig1T9iD3QgEi1wt/44HvhexsWYWEMq3ahrsBYFPV1XBGppUA==
  • google-site-verification=ChisWfOYgRRWSjdcMaQ3t4U6jNSYfcmQcj5hCvjfYQ8
  • docusign=be86e05f-d75b-4e21-8d93-f80ce78eddaa
  • docusign=81d569c6-a412-4c75-a3fb-fe97d1777457
  • v=spf1 a mx a: ip4:184.189.16.198 ip4:98.168.115.203 ip4:10.209.35.28 include:spf.protection.outlook.com include:spf.ess.barracudanetworks.com -all
Cloud / SaaS Services Detected
Microsoft 365 DocuSign

Leak Screenshot:

Leak Screenshot