Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Grandview School District

Group: Blacksuit

Discovered by ransomware.live: 2024-11-27

Estimated attack date: 2024-10-08

Country: US

Description:

The Grandview School District, with families and the community, will put students first by providing a high-quality education. GSD will nurture and empower each student to reach their full potential. We commit to empower each student to reach their full potential by ¡cultivating una cultura de success! The Grandview School District consists of three elementary schools, one middle school, one high school, and a contract learning center.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 1

Compromised Users: 2

Third Party Employee Credentials: 2


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mx1.hc6570-96.iphmx.com.
  • mx2.hc6570-96.iphmx.com.
TXT Records
  • google-site-verification=4MbcuXw0DPx2hmZX6iSQu4yiXK2RDcmOEWXEz6dOHnQ
  • v=spf1 mx a ip4:162.218.183.23/32 ip4:152.157.6.0/24 ip4:20.252.34.27 include:spf.protection.outlook.com include:gsd200-org.spf.smtp25.com exists:%{i}.spf.hc6570-96.iphmx.com ~all
  • MS=ms76618868
  • apple-domain-verification=DlWVR8etPTHRbkHF
  • sophos-domain-verification=07b7aa589091f68ad910607b7d5e4b69b678288ea98e7b94d522cfa271a07eef
Cloud / SaaS Services Detected
Apple Microsoft 365 Sophos

Leak Screenshot:

Leak Screenshot