Group:
Royal
Discovered by ransomware.live: 2023-06-09
Estimated attack date:
2023-06-09
Description:
PENNCREST School District provides resources and opportunities that challenge students, assess their educational progress, provide a system of support and empower all to become confident lifelong learners. This organization like many other does not hold student information in safe. We are going to upload everything we got from them here soon. Personal information of students and employees as well as schools' financial data are pretty detailed. Everything is of 164GB.Stay in touch!
DNS Records:
The following DNS records were found for the victim's domain.
- 7734cb70744949a6a1bfcf43937d743b.protect@withheldforprivacy.com
- abuse@namecheap.com
- penncrest-org.mail.protection.outlook.com.
- penncrest-org.mail.eo.outlook.com.
- adobe-idp-site-verification=1de320288682ce3ed81d0fffe245f6788b760625d4805768efc8a08190b5250b
- v=spf1 include:spf.protection.outlook.com include:_netblocks.google.com include:_netblocks2.google.com include:_netblocks3.google.com ip4:213.199.128.139 ip4:213.199.128.145 ip4:207.46.50.72 ip4:207.46.50.82 ip4:131.107.3.116 ip4:131.107.3.117 ip4:131.107" ".3.100 ip4:131.107.3.108 a:delivery.pens.microsoft.com mx:microsoft.com include:mailrelay.one2one.learn21.org include:customerspf.schoolmessenger.com ip4:98.129.154.152 ip4:64.83.136.0/24 ip4:64.83.138.0/24 ip4:64.83.142.0/24 ip4:64.83.155.0/24 ip4:64.83." "156.0/24 ip4:216.83.185.44 ip4:173.246.231.0/29 ip4:209.222.82.0/24 ip4:64.83.134.19 ip4:64.83.134.2 ip4:136.228.192.0/22 ip4:209.166.154.0/24 ~all
- include:mailrelay.one2one.learn21.org
- include:customerspf.schoolmessenger.com
- apple-domain-verification=qQXSK2qlmlVXHv7T
- google-site-verification=lxyqZ9cicOABxCGgJlsKXUUzmb9PkvDHPjTpol_63lw
- google-site-verification=wOtZ4_jSSSROFAucOtNvsWRKSFqXO0t9QYyq0d1DZD4
Cloud / SaaS Services Detected
Adobe
Apple
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.