Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.srmedicalcenter.org

Group: Qilin

Discovered by ransomware.live: 2024-07-31

Estimated attack date: 2024-07-16

Country: US

Description:

The company Schneider Regional Medical Center was attacked by us, all infrastructure of the network was blocked. There were stolen the data, among which confidential information, private contracts, agreements, financial documentation, e-mail ...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • srmedicalcenter-org.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:spf.protection.outlook.com -all
  • amazonses:q8+3WzbfwXYko2e6RyMjZncviWmkxg7va6Aj4QhpGQU=
  • TG=7qakyf
  • mscid=RIRD6kGFGfSe4L5Zy89VxIRyNOUBe4cEmAcLLdYZ+n1JuPGdKiN9mBWZuTKZXhBrpol5E8tOHVPMRglIe8OR6A==
Cloud / SaaS Services Detected
Amazon SES/WorkMail

Leak Screenshot:

Leak Screenshot