Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Mediclinic Group

mediclinic.com

Group Everest
Discovered 2025-05-26 11:51 UTC
Est. attack date 2025-05-26
Country ZA

Description:

[AI generated] Mediclinic Group is a private hospital group based in South Africa, with international operations in Switzerland, Southern Africa (South Africa and Namibia), and the United Arab Emirates. Established in 1983, Mediclinic's main services include acute care, specialist-oriented and multidisciplinary healthcare services. Its focus areas include hospitals, clinics and day clinics.

Infostealer activity detected by HudsonRock

Compromised Employees: 88

Compromised Users: 0

Third Party Employee Credentials: 1


External Attack Surface: 3


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuselexsynergy.com
MX Records
  • za-smtp-inbound-1.mimecast.co.za.
  • za-smtp-inbound-2.mimecast.co.za.
TXT Records
  • amazonses:Aj63EZofzFhd2TfC/ZR7/cedXiXjsGO6+Wy0cfx2DIY=
  • docusign=c949fdd3-edbd-4adb-a155-d8f05fe3bf6d
  • JT0UR7f1PGHJMQGqeGmQH58U/n8UVuxJjOj7VpQkooV65hzJEbDyfPpfFcjNhcZ8/thtI5+ZsXxogZD0/cHDdw==
  • MS=ms62215505
  • google-site-verification=ts07fjA79N6l5pHTbtzhvH988wuXBkl0SSjAxcTYIwo
  • v=spf1 include:_netblocks.mimecast.com -all
  • google-site-verification=V8s5HqfUr7ZBx7jVWcxB92zMZAzn9jtgAszJEzYmGTA
Cloud / SaaS Services Detected
Amazon SES/WorkMail Microsoft 365 Mimecast DocuSign

Leak Screenshot:

Leak Screenshot