Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Enjoying ransomware.live? Help us keep tracking ransomware gangs and shipping new features. Support us

FRUIT.COM

FRUIT.COM

Group Clop
Discovered 2025-11-21 12:50 UTC
Est. attack date 2025-11-21
Sector
Agriculture and Food Production Education Energy & Utilities Financial Services Government & Defense Healthcare Hospitality Manufacturing Other Professional Services Retail & E-Commerce Technology Transportation

Description:

[AI generated] Fruit.com is an online delivery-focused gift company specializing in fresh fruit arrangements or boxes. Their product range includes fresh fruit baskets, gourmet chocolate-dipped fruit, and an array of other gift items. Fruit.com uses a direct delivery model to ensure the fresh and quality of their products upon arrival, making it easy for customers to send healthy and unique gifts for various occasions. They emphasize on excellent customer service.

Infostealer activity detected by HudsonRock

Compromised Employees: 4

Compromised Users: 306

Third Party Employee Credentials: 18


External Attack Surface: 45


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • fruit-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • facebook-domain-verification=2lqhya7dkjpv8vdpfkhqk99yng0y3g
  • facebook-domain-verification=79yrq5ecw7ew69qqa7o5gw8odsr8k4
  • google-site-verification=7ZL2Rva033tQDmaM3J6J2BXRi4rzkXHp6Ag7Bj1Rls0
  • google-site-verification=Pq7-1j74RHfxShPNha7eykMksB-Ha5kA5TLcjNZBwDM
  • v=spf1 mx ip4:95.154.202.25 ip4:204.124.208.203 include:spf.protection.outlook.com include:spfbazv.fruit.com include:spfdemandware.fruit.com -all
  • MS=ms62602176
  • 5lkdvj8cvq16eujr750acl25vf
  • klaviyo-site-verification=QZwi5e
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot