Loading...
CARD
INFO
Dominio: district6.org
Registrar: Network Solutions, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
Motori che NON classificano il dominio come harmless:
Analisi DNS
Certificato HTTPS
LEAKS NOTI e MALWARE
Raw data
by HudsonRock
Summary
🧠 Dispositivi infetti: 43
🌐 Utenti compromessi: 23
🧑💼 Utenti aziendali compromessi: 20
🔑 Password aziendali esposte: 28
🔑 Password users esposte: 60
🧬 Stealer family e conteggio
🏢 Utenze aziendali compromesse (link/conteggio)
🔐 Utenze users compromesse
🛡️ Antivirus rilevati
Dominio: district6.org
Registrar: Network Solutions, LLC
Motori AV recap
- Malevolo: 0
- Sospetto: 0
- Non rilevato: 31
- Innocuo: 63
Analisi Antivirus:
- Acronis: [harmless] clean
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: [undetected] unrated
- Abusix: [harmless] clean
- ADMINUSLabs: [harmless] clean
- Axur: [undetected] unrated
- Criminal IP: [harmless] clean
- AILabs (MONITORAPP): [harmless] clean
- AlienVault: [harmless] clean
- alphaMountain.ai: [harmless] clean
- AlphaSOC: [undetected] unrated
- Antiy-AVL: [harmless] clean
- ArcSight Threat Intelligence: [undetected] unrated
- AutoShun: [undetected] unrated
- benkow.cc: [harmless] clean
- Bfore.Ai PreCrime: [undetected] unrated
- BitDefender: [harmless] clean
- Bkav: [undetected] unrated
- Blueliv: [harmless] clean
- Certego: [harmless] clean
- Chong Lua Dao: [harmless] clean
- CINS Army: [harmless] clean
- Cluster25: [undetected] unrated
- CRDF: [harmless] clean
- CSIS Security Group: [undetected] unrated
- Snort IP sample list: [harmless] clean
- CMC Threat Intelligence: [harmless] clean
- Cyan: [undetected] unrated
- Cyble: [harmless] clean
- CyRadar: [harmless] clean
- DNS8: [harmless] clean
- Dr.Web: [harmless] clean
- Ermes: [undetected] unrated
- ESET: [harmless] clean
- ESTsecurity: [harmless] clean
- EmergingThreats: [harmless] clean
- Emsisoft: [harmless] clean
- Forcepoint ThreatSeeker: [harmless] clean
- Fortinet: [harmless] clean
- G-Data: [harmless] clean
- GCP Abuse Intelligence: [undetected] unrated
- Google Safebrowsing: [harmless] clean
- GreenSnow: [harmless] clean
- Gridinsoft: [undetected] unrated
- Heimdal Security: [harmless] clean
- Hunt.io Intelligence: [undetected] unrated
- IPsum: [harmless] clean
- Juniper Networks: [harmless] clean
- Kaspersky: [harmless] clean
- Lionic: [harmless] clean
- Lumu: [undetected] unrated
- MalwarePatrol: [harmless] clean
- MalwareURL: [undetected] unrated
- Malwared: [harmless] clean
- Mimecast: [undetected] unrated
- Netcraft: [undetected] unrated
- OpenPhish: [harmless] clean
- Phishing Database: [harmless] clean
- PhishFort: [undetected] unrated
- PhishLabs: [undetected] unrated
- Phishtank: [harmless] clean
- PREBYTES: [harmless] clean
- PrecisionSec: [undetected] unrated
- Quick Heal: [harmless] clean
- Quttera: [harmless] clean
- SafeToOpen: [undetected] unrated
- Sansec eComscan: [undetected] unrated
- Scantitan: [harmless] clean
- SCUMWARE.org: [harmless] clean
- Seclookup: [harmless] clean
- SecureBrain: [undetected] unrated
- SOCRadar: [undetected] unrated
- Sophos: [harmless] clean
- Spam404: [harmless] clean
- StopForumSpam: [harmless] clean
- Sucuri SiteCheck: [harmless] clean
- ThreatHive: [harmless] clean
- Threatsourcing: [harmless] clean
- Trustwave: [harmless] clean
- Underworld: [undetected] unrated
- URLhaus: [harmless] clean
- URLQuery: [undetected] unrated
- Viettel Threat Intelligence: [harmless] clean
- VIPRE: [undetected] unrated
- VX Vault: [harmless] clean
- ViriBack: [harmless] clean
- Webroot: [harmless] clean
- Yandex Safebrowsing: [harmless] clean
- ZeroCERT: [harmless] clean
- desenmascara.me: [harmless] clean
- malwares.com URL checker: [harmless] clean
- securolytics: [harmless] clean
- Xcitium Verdict Cloud: [undetected] unrated
- zvelo: [undetected] unrated
- ZeroFox: [undetected] unrated
- 0xSI_f33d: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Axur: undetected (unrated)
- AlphaSOC: undetected (unrated)
- ArcSight Threat Intelligence: undetected (unrated)
- AutoShun: undetected (unrated)
- Bfore.Ai PreCrime: undetected (unrated)
- Bkav: undetected (unrated)
- Cluster25: undetected (unrated)
- CSIS Security Group: undetected (unrated)
- Cyan: undetected (unrated)
- Ermes: undetected (unrated)
- GCP Abuse Intelligence: undetected (unrated)
- Gridinsoft: undetected (unrated)
- Hunt.io Intelligence: undetected (unrated)
- Lumu: undetected (unrated)
- MalwareURL: undetected (unrated)
- Mimecast: undetected (unrated)
- Netcraft: undetected (unrated)
- PhishFort: undetected (unrated)
- PhishLabs: undetected (unrated)
- PrecisionSec: undetected (unrated)
- SafeToOpen: undetected (unrated)
- Sansec eComscan: undetected (unrated)
- SecureBrain: undetected (unrated)
- SOCRadar: undetected (unrated)
- Underworld: undetected (unrated)
- URLQuery: undetected (unrated)
- VIPRE: undetected (unrated)
- Xcitium Verdict Cloud: undetected (unrated)
- zvelo: undetected (unrated)
- ZeroFox: undetected (unrated)
- Tipo: TXT, Valore: hq70ptddiv0knd9vvlfse56op4
- Tipo: TXT, Valore: ZOOM_verify_AfAHn0BjS7OC8DBDeP3Xew
- Tipo: TXT, Valore: lB6GVC1yaDe5P500vmZ174+V27OXavnUbkwk21HgEHcRj1BB0lkzV9gJ+zygsoOGTLcZ3s0pAdf+0IXhp05YCQ==
- Tipo: TXT, Valore: ib277g0pf3k6hk5e29ufv5ms09
- Tipo: TXT, Valore: i2otis1memac0ni1d49qh2gi15
- Tipo: TXT, Valore: v=spf1 ip4:104.153.166.6/24 a:smtp.district6.org include:_spf.google.com include:mailgun.org ~all
- Tipo: TXT, Valore: c8cdxc6r73br9l0qjyy9djq5cc4dl6cj
- Tipo: SOA, Valore: district6.org
- Tipo: MX, Valore: smtp.google.com
- Tipo: TXT, Valore: 9cvlgarmngn2u22kon7lm7vsnf
- Tipo: A, Valore: 104.17.71.73
- Tipo: TXT, Valore: net5onaok35i3cmoq4dfp83dkt
- Tipo: TXT, Valore: sophos-domain-verification=daf82bdb9e9aa2dd40841674cc0fa2d2c407707a
- Tipo: NS, Valore: ns2.district6.org
- Tipo: TXT, Valore: ddhvr9m30dswjj55s09c64ykzbbbtcyc
- Tipo: TXT, Valore: adobe-idp-site-verification=0713ed5fa6b9e7d8e2ccdaebaab0cab3e751617839ed1296ae0a5d499221d43b
- Tipo: TXT, Valore: apple-domain-verification=XXJNi0a9knLwTzvj
- Tipo: TXT, Valore: adobe-idp-site-verification=830a00609773570ec79d66760a49cc75012e4b53a9dc0fc0059596a8c073a611
- Tipo: NS, Valore: ns1.district6.org
- Tipo: TXT, Valore: ZOOM_verify_AfAHn0BjS7OC8DBDeP3Xew
- Tipo: TXT, Valore: lB6GVC1yaDe5P500vmZ174+V27OXavnUbkwk21HgEHcRj1BB0lkzV9gJ+zygsoOGTLcZ3s0pAdf+0IXhp05YCQ==
- Tipo: TXT, Valore: ib277g0pf3k6hk5e29ufv5ms09
- Tipo: TXT, Valore: i2otis1memac0ni1d49qh2gi15
- Tipo: TXT, Valore: v=spf1 ip4:104.153.166.6/24 a:smtp.district6.org include:_spf.google.com include:mailgun.org ~all
- Tipo: TXT, Valore: c8cdxc6r73br9l0qjyy9djq5cc4dl6cj
- Tipo: SOA, Valore: district6.org
- Tipo: MX, Valore: smtp.google.com
- Tipo: TXT, Valore: 9cvlgarmngn2u22kon7lm7vsnf
- Tipo: A, Valore: 104.17.71.73
- Tipo: TXT, Valore: net5onaok35i3cmoq4dfp83dkt
- Tipo: TXT, Valore: sophos-domain-verification=daf82bdb9e9aa2dd40841674cc0fa2d2c407707a
- Tipo: NS, Valore: ns2.district6.org
- Tipo: TXT, Valore: ddhvr9m30dswjj55s09c64ykzbbbtcyc
- Tipo: TXT, Valore: adobe-idp-site-verification=0713ed5fa6b9e7d8e2ccdaebaab0cab3e751617839ed1296ae0a5d499221d43b
- Tipo: TXT, Valore: apple-domain-verification=XXJNi0a9knLwTzvj
- Tipo: TXT, Valore: adobe-idp-site-verification=830a00609773570ec79d66760a49cc75012e4b53a9dc0fc0059596a8c073a611
- Tipo: NS, Valore: ns1.district6.org
- Emesso da: E6
- Intestato a: district6.org
- Valido dal: 2025-02-03 18:56:08
- Valido fino al: 2025-05-04 18:56:07
- Algoritmo firma: EC
- Versione: V3
- Serial number: 37857e3ea378466a50a92f54e01bd63863a
- Intestato a: district6.org
- Valido dal: 2025-02-03 18:56:08
- Valido fino al: 2025-05-04 18:56:07
- Algoritmo firma: EC
- Versione: V3
- Serial number: 37857e3ea378466a50a92f54e01bd63863a
Summary
🧠 Dispositivi infetti: 43
🌐 Utenti compromessi: 23
🧑💼 Utenti aziendali compromessi: 20
🔑 Password aziendali esposte: 28
🔑 Password users esposte: 60
🧬 Stealer family e conteggio
RedLine: 29
Lumma: 6
Generic Stealer: 5
Azorult: 2
UNKNOWN: 1
Lumma: 6
Generic Stealer: 5
Azorult: 2
UNKNOWN: 1
https://mail.district6.org/owa/auth/logon.aspx: 22
https://federation.district6.org/adfs/ls/: 2
https://mail.district6.org/owa/auth/expiredpassword.aspx: 2
https://federation.district6.org/adfs/ls: 2
https://federation.district6.org/adfs/ls/: 2
https://mail.district6.org/owa/auth/expiredpassword.aspx: 2
https://federation.district6.org/adfs/ls: 2
-
https://vue.district6.org/PXP2_Login_Student.aspx: 35
https://vue.district6.org/pxp2_login_student.aspx: 5
https://synergy.district6.org: 5
http://vue.district6.org/login_student_pxp.aspx: 3
https://vue.district6.org/PXP2_Login_Parent.aspx: 3
http://•••.district6.org/•••••_••••••_•••.••••: 1
https://•••.district6.org/•••••_•••••••_•••.••••: 1
https://•••.district6.org/••••_•••••_••••••.••••: 1
http://•••.district6.org/•••••_•••••••_•••.••••: 1
https://•••••••••.district6.org/••••••••••••.••••: 1
https://•••••••••.district6.org/••••••.••••: 1
https://•••.district6.org/••••_••••••_••••••••_•••••.••••: 1
https://•••.district6.org/••••••_••••••••_•••••.••••: 1
https://•••.district6.org: 1
McAfee VirusScan: 1
AVG Antivirus: 1
Windows Defender: 9
Not Found: 3
Kaspersky Free: 1
AVG Antivirus: 1
Windows Defender: 9
Not Found: 3
Kaspersky Free: 1