Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.dekalbcountyga.gov

Group: Lynx

Discovered by ransomware.live: 2025-10-21

Estimated attack date: 2025-10-21

Country: US

Description:

DeKalb County is the third most populated county in the state of Georgia and is the county seat of Decatur.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 50

Third Party Employee Credentials: 4


External Attack Surface: 16


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • postmaster dekalbcountyga.gov
MX Records
  • dekalbcountyga-gov.mail.protection.outlook.com.
TXT Records
  • lggm1677qyb39gs4dc3fpgc23cv30v3h
  • Cnl8A9WX93PHhGb5+RVM58m2U8qP2ULA+w9AHBpmx/W/tpNbTX7XdRyMxeTxa3ue5sfrBpnDYjlUtyhEfp5TJQ==
  • qvj7qcw9kttjxn3ldnmyfvcvm0s8r4n4
  • ZA=2X6OQXFzllls4yQw1M07JyRDUZ87HGi+GZNxkJ65tBU=
  • apple-domain-verification=txNQnGeIKC2t2Sp5
  • MS=ms79140010
  • canva-site-verification=pDhccpDKWns8BgYdbv705w
  • b332cbpt6k1wq9f4c36n96rhwnvzy7gb
  • v=spf1 ip4:162.241.225.36 ip4:52.247.161.247 ip4:52.227.25.221 ip4:52.136.116.83 ip4:52.247.161.204 ip4:208.75.120.0/22 ip4:205.207.104.0/22 ip4:205.201.128.0/20 ip4:198.2.128.0/18 ip4:148.105.8.0/21 ip4:66.39.65.31/32 ip6:2607:f440::4227:411f/128 include" ":spf.protection.outlook.com include:spf.dynect.net include:spf.pantheon.io include:spf.securedsigning.com include:sendgrid.net include:everbridge.net include:spf_c.oraclecloud.com include:spf.zohomail360.com -all
  • 963l2tr3smfcgbj0bp6fyr9tstkf4jvn
Cloud / SaaS Services Detected
Apple Microsoft 365 Oracle Cloud SendGrid

Leak Screenshot:

Leak Screenshot