Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Lexington & Richland County School District Five

lexrich5.org

Discovered 2025-06-24
Est. attack date 2025-06-24
Country US

Description:

School District Five of Lexington & Richland Counties, commonly referred to as District Five, was organized by action of the Lexington County Board of Education in 1951 and the Richland County Board of Education in 1952. The school district has three attendance areas: Chapin, Dutch Fork, and Irmo. District Five operates elementary schools, intermediate schools, middle schools, high schools, a Center for Advanced Technical Studies and an alternative school.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 52

Third Party Employee Credentials: 60


External Attack Surface: 35


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • alt2.aspmx.l.google.com.
  • aspmx2.googlemail.com.
  • aspmx3.googlemail.com.
  • alt1.aspmx.l.google.com.
  • aspmx.l.google.com.
TXT Records
  • gkg2peo2ius36a098pm7titqmu
  • google-site-verification=d15roue1yT1PN_KvVMylfd-kr8n3_RbBwfQZvevOYWQ
  • 6oeta3je1b3pphpno1s6d63hso
  • google-site-verification=itK13HeRX709S9PWXJk2IcYtAJ5Ur9rz6XGOcr7rEK0
  • MS=DFBDD1E7BE90E8E4FA851CFB839CA1D2AA03D21A
  • google-site-verification=0PCFlcxiQYd6eVfhTA0NI_igjFD_mCXls_Bv59WSvss
  • adobe-idp-site-verification=f89c8b9d8f067ac478f1b769449066011173c89d2046f317f94f709518d3cc70
  • ciscocidomainverification=62c18fb4aa61fa161d97fa7b69413e47814d421db5c66d182d384832ee837c52
  • 49h4pporpg2gmbbo2dta6nmivg
  • apple-domain-verification=hwLj6gE9ZTfERD7Z
  • v=spf1 mx include:_spf.google.com ip4:69.90.103.215 ip4:52.206.191.224/27 include:sendgrid.net include:_spf.bbnotify.net include:mail.rycorsoftware.net ~all
  • duo_sso_verification=fJJeJtxG54YzfTIc1MBrAzwGRLltyAYQDXG5UKpXu9Mmr6jg4Bb7j6jS5XOZxCyZ
  • ZOOM_verify_Xr19uxVRWhmBEdpR6UJZj1
  • f16cfgi21avdrgdai7hc1p40jr
Cloud / SaaS Services Detected
Adobe Apple SendGrid Cisco Duo Zoom

Leak Screenshot:

Leak Screenshot