Loading...
CARD
INFO
Dominio: nkschools.org
Registrar: GoDaddy.com, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 30
- Innocuo: 64
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
๐ง Dispositivi infetti: 29
๐ Utenti compromessi: 3
๐งโ๐ผ Utenti aziendali compromessi: 26
๐ Password aziendali esposte: 31
๐ Password users esposte: 4
๐งฌ Stealer family e conteggio
๐ข Utenze aziendali compromesse (link/conteggio)
๐ Utenze users compromesse
๐ก๏ธ Antivirus rilevati
Dominio: nkschools.org
Registrar: GoDaddy.com, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 30
- Innocuo: 64
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: TXT, Valore: MS=ms31110562
- Tipo: MX, Valore: aspmx.l.google.com
- Tipo: MX, Valore: alt4.aspmx.l.google.com
- Tipo: NS, Valore: ns30.domaincontrol.com
- Tipo: TXT, Valore: v=spf1 mx a ip4:152.157.6.20 ip4:199.36.164.0/22 ip4:152.157.6.7 ip4:152.157.6.8 ip4:192.206.201.36 ip4:152.157.6.22 ip4:152.157.6.52 ip4:152.157.6.10 ip4:192.207.104.201 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip4:172.217.0
- Tipo: TXT, Valore: google-site-verification=uZatqj4zFGNtbyc4w2eO3t7MTNVPYvLfLcDLM-pXwbw
- Tipo: MX, Valore: alt3.aspmx.l.google.com
- Tipo: TXT, Valore: ZOOM_verify_z8mZIL4MTNiZT8aIbkcwQQ
- Tipo: TXT, Valore: 554RGVEcpLWOOWDz8pqC6ETtPWlcp/6h0a8y+ynPDUkYVIQql52pQSJkB1hRsaNoftdBxg06QPRHtn7QkBQABQ==
- Tipo: TXT, Valore: google-site-verification=FIxTaYKi8Wkr3dPT3lFU0LdNy8sVWa4luUE09Q-ro8k
- Tipo: A, Valore: 104.17.70.73
- Tipo: TXT, Valore: adobe-idp-site-verification=3ea5691b93d86f564030a7a21f054956aea196c6ef7144e03a2b076cf0b053e0
- Tipo: MX, Valore: alt2.aspmx.l.google.com
- Tipo: TXT, Valore: bw=mOE/ynD+WQTtYuWqhoPUDMH9bVB226q+v1GUmIvx5u/N
- Tipo: TXT, Valore: google-site-verification=s6d7bSTd84BrtnxLTCVewTLczMpFJDtF3fBZc0Juqdg
- Tipo: SOA, Valore: ns29.domaincontrol.com
- Tipo: MX, Valore: alt1.aspmx.l.google.com
- Tipo: NS, Valore: ns29.domaincontrol.com
- Tipo: MX, Valore: aspmx.l.google.com
- Tipo: MX, Valore: alt4.aspmx.l.google.com
- Tipo: NS, Valore: ns30.domaincontrol.com
- Tipo: TXT, Valore: v=spf1 mx a ip4:152.157.6.20 ip4:199.36.164.0/22 ip4:152.157.6.7 ip4:152.157.6.8 ip4:192.206.201.36 ip4:152.157.6.22 ip4:152.157.6.52 ip4:152.157.6.10 ip4:192.207.104.201 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip4:172.217.0
- Tipo: TXT, Valore: google-site-verification=uZatqj4zFGNtbyc4w2eO3t7MTNVPYvLfLcDLM-pXwbw
- Tipo: MX, Valore: alt3.aspmx.l.google.com
- Tipo: TXT, Valore: ZOOM_verify_z8mZIL4MTNiZT8aIbkcwQQ
- Tipo: TXT, Valore: 554RGVEcpLWOOWDz8pqC6ETtPWlcp/6h0a8y+ynPDUkYVIQql52pQSJkB1hRsaNoftdBxg06QPRHtn7QkBQABQ==
- Tipo: TXT, Valore: google-site-verification=FIxTaYKi8Wkr3dPT3lFU0LdNy8sVWa4luUE09Q-ro8k
- Tipo: A, Valore: 104.17.70.73
- Tipo: TXT, Valore: adobe-idp-site-verification=3ea5691b93d86f564030a7a21f054956aea196c6ef7144e03a2b076cf0b053e0
- Tipo: MX, Valore: alt2.aspmx.l.google.com
- Tipo: TXT, Valore: bw=mOE/ynD+WQTtYuWqhoPUDMH9bVB226q+v1GUmIvx5u/N
- Tipo: TXT, Valore: google-site-verification=s6d7bSTd84BrtnxLTCVewTLczMpFJDtF3fBZc0Juqdg
- Tipo: SOA, Valore: ns29.domaincontrol.com
- Tipo: MX, Valore: alt1.aspmx.l.google.com
- Tipo: NS, Valore: ns29.domaincontrol.com
- Emesso da: E5
- Intestato a: nkschools.org
- Valido dal: 2025-02-15 21:41:41
- Valido fino al: 2025-05-16 21:41:40
- Algoritmo firma: EC
- Versione: V3
- Serial number: 46a4beb457551f61a0b13d031fb37f2df39
- Intestato a: nkschools.org
- Valido dal: 2025-02-15 21:41:41
- Valido fino al: 2025-05-16 21:41:40
- Algoritmo firma: EC
- Versione: V3
- Serial number: 46a4beb457551f61a0b13d031fb37f2df39
Summary
๐ง Dispositivi infetti: 29
๐ Utenti compromessi: 3
๐งโ๐ผ Utenti aziendali compromessi: 26
๐ Password aziendali esposte: 31
๐ Password users esposte: 4
๐งฌ Stealer family e conteggio
RedLine: 18
Azorult: 5
Generic Stealer: 2
Vidar: 2
Lumma: 2
Azorult: 5
Generic Stealer: 2
Vidar: 2
Lumma: 2
https://adfs.nkschools.org/adfs/ls: 18
https://adfs.nkschools.org/adfs/ls/: 12
https://adfs.nkschools.org: 1
https://adfs.nkschools.org/adfs/ls/: 12
https://adfs.nkschools.org: 1
-
https://destiny.nkschools.org/common/servlet/presentloginform.do: 2
http://www.nkschools.org/gateway/login.aspx: 1
https://nk-viewuag.nkschools.org/portal/webclient/index.html: 1
Windows Defender: 4
Not Found: 6
Disabled: 1
Spybot - Search and Destroy: 1
Not Found: 6
Disabled: 1
Spybot - Search and Destroy: 1