Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

www.d47.org

d47.org

Discovered 2024-12-04 14:46 UTC
Est. attack date 2024-10-31
Country US

Description:

[AI generated] www.d47.org is the website for Crystal Lake Elementary District 47, a public school district serving Crystal Lake and parts of Lakewood and Lake in the Hills in Illinois. The district provides education for students in kindergarten through eighth grade. It focuses on fostering a supportive and inclusive environment, emphasizing academic excellence, and offers various programs to support student development and community engagement.

Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 0

Third Party Employee Credentials: 3


External Attack Surface: 1


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • aspmx3.googlemail.com. Google Workspace
  • alt2.aspmx.l.google.com. Google Workspace
  • alt1.aspmx.l.google.com. Google Workspace
  • aspmx.l.google.com. Google Workspace
  • aspmx2.googlemail.com. Google Workspace
TXT Records
  • adobe-idp-site-verification=53c6dc736558795c3a1ecdc7b9c44802f282a5ef63ec0be9a5252440a1efa542
  • v=spf1 ip4:12.189.68.0/24 ip4:69.196.242.0/24 ip4:192.230.230.0/24 ip4:167.89.74.79 ip4:167.89.74.142 ip4:167.89.74.157 include:sendgrid.net include:_spf.bbnotify.net include:_spf.google.com ~all
Cloud / SaaS Services Detected
Adobe SendGrid

Leak Screenshot:

Leak Screenshot