Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Lexington & Richland County School District Five

Group: interlock

Discovered by ransomware.live: 2025-06-24

Estimated attack date: 2025-06-24

Country: US

Description:

School District Five of Lexington & Richland Counties, commonly referred to as District Five, was organized by action of the Lexington County Board of Education in 1951 and the Richland County Board of Education in 1952. The school district has three attendance areas: Chapin, Dutch Fork, and Irmo. District Five operates elementary schools, intermediate schools, middle schools, high schools, a Center for Advanced Technical Studies and an alternative school.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 52

Third Party Employee Credentials: 60


External Attack Surface: 35


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • aspmx3.googlemail.com.
  • aspmx2.googlemail.com.
  • alt2.aspmx.l.google.com.
  • aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
TXT Records
  • ZOOM_verify_Xr19uxVRWhmBEdpR6UJZj1
  • adobe-idp-site-verification=f89c8b9d8f067ac478f1b769449066011173c89d2046f317f94f709518d3cc70
  • duo_sso_verification=fJJeJtxG54YzfTIc1MBrAzwGRLltyAYQDXG5UKpXu9Mmr6jg4Bb7j6jS5XOZxCyZ
  • gkg2peo2ius36a098pm7titqmu
  • f16cfgi21avdrgdai7hc1p40jr
  • google-site-verification=0PCFlcxiQYd6eVfhTA0NI_igjFD_mCXls_Bv59WSvss
  • v=spf1 mx include:_spf.google.com ip4:69.90.103.215 ip4:52.206.191.224/27 include:sendgrid.net include:_spf.bbnotify.net include:mail.rycorsoftware.net ~all
  • MS=DFBDD1E7BE90E8E4FA851CFB839CA1D2AA03D21A
  • google-site-verification=itK13HeRX709S9PWXJk2IcYtAJ5Ur9rz6XGOcr7rEK0
  • ciscocidomainverification=62c18fb4aa61fa161d97fa7b69413e47814d421db5c66d182d384832ee837c52
  • 49h4pporpg2gmbbo2dta6nmivg
  • 6oeta3je1b3pphpno1s6d63hso
  • apple-domain-verification=hwLj6gE9ZTfERD7Z
  • google-site-verification=d15roue1yT1PN_KvVMylfd-kr8n3_RbBwfQZvevOYWQ
Cloud / SaaS Services Detected
Adobe Apple SendGrid Cisco Duo Zoom

Leak Screenshot:

Leak Screenshot