Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Prospect Medical Holdings

pmh.com

Group Rhysida
Discovered 2023-08-24 08:38 UTC
Est. attack date 2023-08-24

Description:

Prospect Medical Holdings

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 1

Third Party Employee Credentials: 9


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • dbafc7a4def144e987349d427fa1185b.protectwithheldforprivacy.com
  • abusenamecheap.com
MX Records
  • pmh-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • v=spf1 include:spf.protection.outlook.com include:apttus.pmh.com include:spf_c.oraclecloud.com include:spf_a.oraclecloud.com
Cloud / SaaS Services Detected
Oracle Cloud