Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Rockford Public School District

rps205.com

Discovered 2024-06-10
Est. attack date 2024-05-30
Country US
City Rockford

Description:

In the course of successful work with this company, we have more than 1.5 TB of data in our hands. Data on students, passports of employees and students. Data on all incidents in recent years. All financial documents, all mail correspondence. And much, much more. In case of refusal to agree, all information will be published.

Infostealer activity detected by HudsonRock

Compromised Employees: 27

Compromised Users: 209

Third Party Employee Credentials: 113


External Attack Surface: 44


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • mx-02-us-east-2.prod.hydra.sophos.com.
  • mx-01-us-east-2.prod.hydra.sophos.com.
TXT Records
  • apeok7r25hjjqgnon0an4ijkcd
  • oljduhnmfdb9gup6fqblbn7oob
  • rfmrraodk1fnroq4sl3qp7l5li
  • google-site-verification=zcymVNgMHleK88ijhBt7lLKor1Is-bJrTVjuH_tpmRU
  • openai-domain-verification=dv-9xFxaKyq0inQXlYadXAllcbn
  • tqoovoghir8td7ip8f7brlm2pf
  • v=spf1 ip4:206.31.47.40 ip4:199.36.164.0/22 ip4:38.73.236.194 ip4:38.73.236.195 ip4:216.109.67.249 ip4:52.226.152.64/28 ip4:20.62.181.248/29 include:zarca-inc.com include:k12-lets-talk.com include:spf" ".protection.outlook.com include:customerspf.schoolmessenger.com include:_spf.psm.knowbe4.com include:sendgrid.net ~all
  • 5ruimgmn7872h1hp69cn0g6ivq
  • duo_sso_verification=RbgCXLlOGUQmVX1Da7v04NyQ11IpKmOQN0rgzpRqBH0OTMi7YMRLtMDpZG9aHtmw
  • lp4hbjifign35rj7sns8677de0
  • apple-domain-verification=bETlhxRCeTvwR8qm
  • 7kv17jt2e33eg21no8bljoubku
Cloud / SaaS Services Detected
Apple KnowBe4 SendGrid Cisco Duo

Leak Screenshot:

Leak Screenshot