Ransomware victim disclosure
← All victimsUnknown Urgent Care Provider
Claimed by Pear · listed 19 hours ago
Status timeline
- ListedSep 4, 2026
Current state: Listed for ransom
At a glance
- Group
- Pear
- Status
- Listed for ransom
- Country
- United States
- Sector
- Healthcare
- Listed on leak site
- Sep 4, 2026
About the victim
AI dossier — public-source company profileAn urgent care provider operating across Texas, offering affordable healthcare services to the local community.
- Industry
- Healthcare - Urgent Care
Attack summary
Severity: low — The victim is listed on the group's leak site with only a generic description ('Affordable urgent care across Texas') and no proof files, screenshots, or confirmed data exfiltration details. No operational disruption is stated.The ransomware group claims to have compromised an urgent care provider in Texas. No specific details about encryption, exfiltration, or data types are provided in the leak post excerpt.
What the group claims
Affordable urgent care across Texas
The leak post
captured from the group's site| | | | | | | | --- | | | | | | | | Manufacture Automotive, Industrial, Decorative and Furniture Coatings, and distribute associated products Paint, Coating, and Adhesive Manufacturing, Chemicals, Petrochemicals, Glass & Gases, Manufacturing | | --- | | | | | | | | Affordable urgent care across Texas | | --- | | | | | | | | Provider for Business-class Internet, Cybersecurity & Home Wi-Fi Internet Service Providers, Website Hosting & Internet-related Services | | --- | | | | | | | | **Mogren, Glessner & Ahrens, P.S. ** Law Firms & Legal Services | | --- | | | | | | | | Privately held real estate investment and development company Advertising Networks, Finance & Real Estate Business Services | | --- | | | | | | | | **Clifton Architectural Glass & Metal ** A company that installs double-pane windows | | --- | | | | | | | | A center staffed by highly skilled plastic surgeons | | --- | | | | | | | | Comprehensive platform to manage Medi-Cal billing, L…
Screenshot of the leak post

Sources
Source
Indexed 19 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

