Group:
Worldleaks
Discovered by ransomware.live: 2025-08-19
Estimated attack date:
2025-08-19
Country:
Description:
[AI generated] MPOWERHealth is a Texas-based healthcare services company primarily serving the value-based care market in the United States. They offer specialized medical solutions aimed at improving the quality of care while reducing costs. Their comprehensive services include outpatient surgery, post-acute care, analytics for population health management, and a collaborative physician network. Their work promotes efficient patient care and coordination for all stakeholders.
DNS Records:
The following DNS records were found for the victim's domain.
- mpowerhealth-com.mail.protection.outlook.com.
- _mgufk9wz2rl6z19pot1rpyof6ztozcm
- box-domain-verification=7b785cfac8c678c86a3e5350646028ef22119155cb781c75f9a53a3514a1b521
- v=spf1 include:spf.protection.outlook.com include:_spf.salesforce.com include:_spf.intacct.com include:spf.mspmanager.com include:5995576.spf08.hubspotemail.net include:_spf.ultipro.com -all
- google-site-verification=kDNBBHYZWQp3bjqTqbaBwU9WLSTTZMTf6RJiFHbhbCo
- apple-domain-verification=ORu3DqaImAGtN7c0
- Foxit-domain-verification=940306e72206a3943df1c59861adede3
- _1tuuokapb5obykbpfegl54kekgiwqpr
- 914l5mv68vd3vdq78b6kw7klg5c5vfcq
- _tn5n3u8srlka1u4yjtcal0uqewzwfy7
- _setf2ww999yi7dz0um8nswytow7kswe
- anthropic-domain-verification-9mtcfc=R1qU6zcaRmxAPbBAVXqV3Sa1r
- v6lkgqhd227h43s9bxsxd2p24pyzgx32
- _p42tl57mo9nvey54mee84uwgh35qxn5
- twilio-domain-verification=920c2133cecc0e0cd5e1aa715d699127
- intacct-esk=C020EA7E5C4A2B0EE0539A220D0A1674
Cloud / SaaS Services Detected
Apple
HubSpot
Salesforce
Twilio
Box
Sage
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.