Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo PruittHealth

Group: noescape

Discovered by ransomware.live: 2023-11-18

Estimated attack date: 2023-11-17

Description:

A family-owned organization for more than 50 years, PruittHealth provides a seamless network of post-acute care services and resources, offering skilled nursing care, home ...



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • pruitthealth-com.mail.protection.outlook.com.
TXT Records
  • teamviewer-sso-verification=214bc6d679854889917052d7bd5bd51c
  • v=spf1 mx a exists:%{i}.spf.hc5211-34.iphmx.com ip4:12.190.12.151 ip4:50.232.100.98 include:spf.exclaimer.net include:_netblocks.mimecast.com include:spf.protection.outlook.com include:email.prnewswire.com -all
  • Docusign=167c6a0b-b0fe-4a75-a01a-6d19f6f9d215
  • MS=ms24867493
  • apple-domain-verification=cXK79ikZfrqLzS3zHl9PQqjQ1FuS-S-d1fO_06bKeaY
  • bHBTVrAdDmVx76b+c5hOsrcAEZKhDsz13FlM+KZZpb+5c+ipwXQmGucVMVpe0MzOMWYlnIZ0dugPSxduoHQ2Vg==
  • cisco-ci-domain-verification=1b96267d5c9c15fcee6805c5d1494318c3d798e725e098224599c1e3146fc71c
  • duo_sso_verification=Shjw0ITMIExoB8txFkWS4X9krwsxe2NakZjkBuzEdO0OdmT1UKXPY3s92m4WjOJf
  • gFe9iIyFNQHW+cA7+HOd2hgyq1ghnCeeDmwgyxbI7aG3PTqdPC6ITk/FFXdOwkyw/uOLBfKGK7+c3T4KdzI+sA==
  • google-site-verification=Z7u9RtOQMvRrRnBQ7qnAURo1MlNYcAnLHuGVlvuWaHg
  • logmein-verification-code=decd0c24-b7ca-41e1-bf69-b8055c40b8cd
  • s52d540ij88e3uukq7mufd2h54
Cloud / SaaS Services Detected
Apple Microsoft 365 LogMeIn Teamviewer Cisco Cisco Duo Mimecast DocuSign

Leak Screenshot:

Leak Screenshot