Loading...
CARD INFO

Dominio: nkschools.org
Registrar: GoDaddy.com, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 30
- Innocuo: 64
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [harmless] clean
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
Motori che NON classificano il dominio come harmless:
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
Analisi DNS
- Tipo: TXT, Valore: MS=ms31110562
- Tipo: MX, Valore: aspmx.l.google.com
- Tipo: MX, Valore: alt4.aspmx.l.google.com
- Tipo: NS, Valore: ns30.domaincontrol.com
- Tipo: TXT, Valore: v=spf1 mx a ip4:152.157.6.20 ip4:199.36.164.0/22 ip4:152.157.6.7 ip4:152.157.6.8 ip4:192.206.201.36 ip4:152.157.6.22 ip4:152.157.6.52 ip4:152.157.6.10 ip4:192.207.104.201 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip4:172.217.0
- Tipo: TXT, Valore: google-site-verification=uZatqj4zFGNtbyc4w2eO3t7MTNVPYvLfLcDLM-pXwbw
- Tipo: MX, Valore: alt3.aspmx.l.google.com
- Tipo: TXT, Valore: ZOOM_verify_z8mZIL4MTNiZT8aIbkcwQQ
- Tipo: TXT, Valore: 554RGVEcpLWOOWDz8pqC6ETtPWlcp/6h0a8y+ynPDUkYVIQql52pQSJkB1hRsaNoftdBxg06QPRHtn7QkBQABQ==
- Tipo: TXT, Valore: google-site-verification=FIxTaYKi8Wkr3dPT3lFU0LdNy8sVWa4luUE09Q-ro8k
- Tipo: A, Valore: 104.17.70.73
- Tipo: TXT, Valore: adobe-idp-site-verification=3ea5691b93d86f564030a7a21f054956aea196c6ef7144e03a2b076cf0b053e0
- Tipo: MX, Valore: alt2.aspmx.l.google.com
- Tipo: TXT, Valore: bw=mOE/ynD+WQTtYuWqhoPUDMH9bVB226q+v1GUmIvx5u/N
- Tipo: TXT, Valore: google-site-verification=s6d7bSTd84BrtnxLTCVewTLczMpFJDtF3fBZc0Juqdg
- Tipo: SOA, Valore: ns29.domaincontrol.com
- Tipo: MX, Valore: alt1.aspmx.l.google.com
- Tipo: NS, Valore: ns29.domaincontrol.com
Certificato HTTPS
- Emesso da: E5
- Intestato a: nkschools.org
- Valido dal: 2025-02-15 21:41:41
- Valido fino al: 2025-05-16 21:41:40
- Algoritmo firma: EC
- Versione: V3
- Serial number: 46a4beb457551f61a0b13d031fb37f2df39
LEAKS NOTI e MALWARE Raw data by HudsonRock
Summary
๐Ÿง  Dispositivi infetti: 29
๐ŸŒ Utenti compromessi: 3
๐Ÿง‘โ€๐Ÿ’ผ Utenti aziendali compromessi: 26
๐Ÿ”‘ Password aziendali esposte: 31
๐Ÿ”‘ Password users esposte: 4
๐Ÿงฌ Stealer family e conteggio
RedLine: 18
Azorult: 5
Generic Stealer: 2
Vidar: 2
Lumma: 2
๐Ÿข Utenze aziendali compromesse (link/conteggio)
https://adfs.nkschools.org/adfs/ls: 18
https://adfs.nkschools.org/adfs/ls/: 12
https://adfs.nkschools.org: 1
๐Ÿ” Utenze users compromesse
    https://destiny.nkschools.org/common/servlet/presentloginform.do: 2
    http://www.nkschools.org/gateway/login.aspx: 1
    https://nk-viewuag.nkschools.org/portal/webclient/index.html: 1
๐Ÿ›ก๏ธ Antivirus rilevati
Windows Defender: 4
Not Found: 6
Disabled: 1
Spybot - Search and Destroy: 1

Questo script colleziona ogni rivendicazione criminale esattamente come esposta dalle fonti (modello "As Is"), in un database SQL per creare un feed permanente, che puรฒ anche essere seguito con tecnologia RSS.
Il motore รจ basato sul progetto ransomFeed, fork in GitHub.