Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks


Group Nova
Discovered 2025-05-27 14:11 UTC
Est. attack date 2025-05-27
Country ES

Description:

​​​​​ Educo El Salvador, the Salvadoran branch of Educo, an international non-governmental organization (NGO) dedicated to...

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 45

Third Party Employee Credentials: 27


External Attack Surface: 24


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusenominalia.com
MX Records
  • educo-org.mail.protection.outlook.com. Microsoft 365
TXT Records
  • google-site-verification=R3OtLV6wGpBp2Pj_AIJAHCzOMkO2Ie0cAEYVKbItCfU
  • google-site-verification=guA5G4dWd0sflWaVHn4WDd9c0DyZmTFSi0BbROzM8XQ
  • nz7dUs6xLlQzKNC2wxFwMHKlQff24JZmp+H4IzJZVkg=
  • pWLkVmVhyWdg5epqaGfkF9bsJuCIIqjMlfIbZOoqWz2dWkA5yvc+fTUZHylW/XC7BE7qSxqaffAFoiRZcbSFGg==
  • v=spf1 include:spf.protection.outlook.com include:sendgrid.net -all
  • MS=ms39605012
  • MS=ms86813542
  • _globalsign-domain-verification=9etfb8b7IDcpiOG-BXH2MRIrKdEBwkzhY1NZwB9sxC
  • _globalsign-domain-verification=s6TLCxhIuMcWi06YMXmx43j8-sXgoE77X6sZBrhPx6
  • google-site-verification=Arc1Mx0Se2ZT9fbpQw4pYPevA07XS5haZcPH9Exg9tY
Cloud / SaaS Services Detected
Global Sign Microsoft 365 SendGrid

Leak Screenshot:

Leak Screenshot