Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Logo PITSCO.COM

Group: Clop

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: US

Description:

[AI generated] Pitsco.com is an education and technology company that specializes in providing hands-on STEM (Science, Technology, Engineering, Mathematics) learning resources. Pitsco offers a variety of K-12 science and engineering products for classrooms, afterschool programs and competitive events. Their product line includes robotics, drones, rocketry, and coding resources. Founded in 1971, Pitsco aims to engage students, develop 21st-century skills, and foster a lifelong love of learning.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 208

Third Party Employee Credentials: 0


External Attack Surface: 11



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse@godaddy.com
MX Records
  • pitsco-com.mail.protection.outlook.com.
TXT Records
  • r3j2syb0b5c30mvhg7d3p20cb31z5kng
  • atlassian-sending-domain-verification=58ceff4a-e797-4b3c-97a0-300c1f95abde
  • pardot1097463=f6762bdf17604dc97cbb9369dc3f258ec6a554b9223101ac2dd05cc9b2045344
  • infor-cloudsuite-domain-verification=NJFALEK52KY26FSU37C2VARQD83E8DD68NTKDPB8JR7PM472PENP3Y8VADHXB9X6
  • google-site-verification=suh9xb1gOGyr9z413imkAGwwu8zYmHLoaa8R6AE8nxQ
  • 3H04VRYNIUX3BX5C7LZQSI2VXIPQKUXQFJC6OGS4
  • v=spf1 ip4:204.14.232.64/28 ip4:182.50.78.64/28 ip4:96.43.144.64/31 ip4:96.43.148.64/31 ip4:152.160.49.0/24 ip4:205.145.130.165/32 ip4:192.254.115.42 ip4:207.75.127.254/32 ip4:216.234.123.86/32 ip4:135.84.81.0/24 ip4:135.84.83.0/24 ip" "4:136.143.160.0/24 ip4:165.173.128.0/24 ip4:135.84.82.0/24 ip4:136.143.161.0/24 ip4:136.143.188.0/24 ip4:135.84.80.0/24 ip4:117.20.43.11/32 ip4:136.143.184.0/24 ip4:198.245.81.0/24 ip4:136.147.176.0/24 ip4:13.111.0.0/16 ip4:136.147.182.0/24 ip4:136.147.13" "5.0/24 ip4:199.122.123.0/24 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip4:192.40.160.0/19 ip4:74.91.80.0/20 ip4:104.143.58.162 ip4:216.49.232.240 ip4:167.89.62.142 ip4:192.254.115.42 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/" "48 include:e2ma.net include:2781691.spf01.hubspotemail.net include:_spf.smtp.com include:_netblocks.google.com include:_netblocks2.google.com include:_netblocks3.google.com include:_spf.salesforce.com include:aspmx.pardot.com ~all
  • atlassian-domain-verification=pYIGyJMP9vfmaVBSDcPZLDNM7e5TgpLV0SstwKjcXtbYzwjXj6POeTNj3i5KiDqm
  • google-site-verification=mH_bgXGv5ajbXgLy6vWRnemVZBxxjUXc74I9vzfGufg
  • cl_verification=05c6f460-053d-4ee5-b615-047164846641
  • sending_domain1097463=57fdde615cc1002aa10fd1c55ca3b589d4a596409b85431eca6a7b427a0e9008
  • atlassian-domain-verification=AVNdN86MbfOLLy2ZGDQoBo4gGg0BLHC2x4bD97TIHi5iI97Dc6QJxW1gWiJMm7Pw
  • ahrefs-site-verification_94409463b231f889d86f1e749db99fc5a45fcb1445a9f090077811c4ca8d3e45
  • _fbh62ruu0iyubxp1knq4z97i6ipze6l
  • spwnpvhh6b0pl14vdgbrs49l1j7bt7pt
Cloud / SaaS Services Detected
Atlassian HubSpot Salesforce