Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

tradingacademy.com

tradingacademy.com

Group Safepay
Discovered 2025-03-11
Est. attack date 2025-03-11
Country US

Description:

[AI generated] Trading Academy is a financial education provider that offers online and in-person courses for individuals interested in learning about trading and investing. They provide education in fields such as stocks, Forex, futures, and options. Their courses cater to beginners as well as seasoned investors, and they are known for their interactive learning experience and hands-on training methods.

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 451

Third Party Employee Credentials: 14


External Attack Surface: 64


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations@web.com
MX Records
  • tradingacademy-com.mail.protection.outlook.com.
TXT Records
  • fdulcpia5e5efc74prjvblfoep
  • unbounce693647
  • v=spf1 ip4:206.169.106.58 ip4:206.80.25.138 include:sendgrid.net include:emailsrvr.com include:spf.protection.outlook.com include:spf.mandrillapp.com ~all
  • BPL=1664566
  • MS=ms18953090
Cloud / SaaS Services Detected
Microsoft 365 Mandrill SendGrid

Leak Screenshot:

Leak Screenshot