Computer hackers installed malware on the covered entity's website that intercepted ePHI of approximately 4,230 individuals, including names, DOBs, contact details, partial payment-card data, primary physicians, diagnoses, order histories, and health insurer information. The entity removed the malware from affected servers and migrated the website to non-compromised infrastructure. Reported to HHS OCR on 2014-01-13.
Affected (this filing): 4,230