Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo lfdcs.org

Group: dispossessor

Discovered by ransomware.live: 2024-04-19

Estimated attack date: 2023-05-03

Description:

More information in our telegram channel https://t.me/snatch_team Persons responsible for data leakage: Karl Patricia:Founder (978) 689-9863 ext. 123; Easton Christine:Secondary School Coordinator (978) 738-0609 ext. 233; Hildt David:Director (978) 738-0609 ext. 258; Heithaus Paul:Director, Program Development (978) 224-8808 ext. 120; Schumann Tony:Technology Coordinator


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 11

Third Party Employee Credentials: 6


External Attack Surface: 1



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abuse cloudflare.com
MX Records
  • lfdcs-org.mail.protection.outlook.com.
TXT Records
  • MS=BF7D00C2D10925C1490C5F0B479232678EF7A55D
  • MS=ms35250697
  • _tdwl00ejfoplc3c3kfqskwo2z6dkc2h
  • adobe-idp-site-verification=160147ecbf3862104c0542d3e765df244505e0ba9433524bb5a81b129262afff
  • google-site-verification=Kk80jLWOnavwxnv8S9TJaIZwDVegGUmF8TXh6V9WPwI
  • lp7bc548wm5fch11f838ndfsdx791pn0
  • ppe-eff2b3d3ca74c31609cbc2e626f8a153cb664380
  • v=spf1 mx include:spf.protection.outlook.com a:dispatch-us.ppe-hosted.com ip4:216.47.186.35 ip4:66.189.250.126 ip4:192.254.115.214 include:k12msg.com include:sendgrid.net include:email-od.com -all
Cloud / SaaS Services Detected
Adobe Microsoft 365 SendGrid Proofpoint Essentials

Leak Screenshot:

Leak Screenshot