Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Signature Healthcare

signature-healthcare.org

Group Anubis
Discovered 2026-04-09 11:22 UTC
Est. attack date 2026-04-09
Country US

Description:

Will there be a release? Keep an eye on the timer.

Infostealer activity detected by HudsonRock

Compromised Employees: 7

Compromised Users: 0

Third Party Employee Credentials: 4


External Attack Surface: 8


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • d293377a.ess.barracudanetworks.com. Barracuda
  • d293377b.ess.barracudanetworks.com. Barracuda
TXT Records
  • meteiplp3ru5jpnts2p8dbn8gk
  • 1k2sp/ogWR0I1uVSe9+o6Af5bhLgncgVeNUVxHt0ufMXleXeMYlH2rLLdg6LIKI5lfjtajWiBTiD3R9KsxnjGg==
  • duo_sso_verification=H729TNT9XPyHKdTMslbZwQ8WoKpkenmTdjGJOh27DEUhBB2GbIBbtHoFxg8UcJwQ
  • v=spf1 mx a:filter2.signature-healthcare.org a:filter.signature-healthcare.org ip4:208.84.33.76 ip4:208.84.33.101 ip4:208.84.33.100 ip4:35.80.141.6 ip4:44.229.121.55 ip4:148.59.100.16/28 include:spf.protection.outlook.com include:spf.ess.barracudanet" "works.com -all
  • heqnk4jh2gojh2qqpmfkdoivpm
  • MS=ms43220411
  • google-site-verification=tkbfOZ_xtuMPJ8dpzbcpdUYnYaxgOEB-jxlR4XoIk1A
  • d05a98bf94fedd5aab652b68f90531e152cd4808
  • apple-domain-verification=yY6F0SbV2Tk8TXL1
Cloud / SaaS Services Detected
Apple Microsoft 365 Cisco Duo

Leak Screenshot:

Leak Screenshot