Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

NATURESWEET.COM

NATURESWEET.COM

Group Clop
Discovered 2025-02-27 16:53 UTC
Est. attack date 2025-02-27
Country US

Description:

[AI generated] NatureSweet is a leading fresh produce brand specializing in high-quality, sweet-tasting tomatoes. Pioneering the market with innovative, technologically advanced agriculture practices, they provide a year-round supply of tomatoes. These include ranges like Cherubs, SunBursts, Glorys, and Constellation. NatureSweet greatly emphasizes sustainable farming methods and fair-trade principles, supporting local communities to cultivate a healthier world.

Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 11

Third Party Employee Credentials: 11


External Attack Surface: 8


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operationsweb.com
MX Records
  • mxb-003c1002.gslb.pphosted.com. Proofpoint
  • mxa-003c1002.gslb.pphosted.com. Proofpoint
TXT Records
  • atlassian-domain-verification=MGOte7DdXDrApzGDaIhDwSbFNTD6Bs5J54Scbdqzqeq/FV2cVbBjUCBL/FJI6VQZ
  • apple-domain-verification=5g55GR6qGk9404Qm
  • teamviewer-sso-verification=1bbc807cc0d8448793515432129a2673
  • google-site-verification=STSRoxbY-2VU-hKsXkZNNiBIvhV3snEe-sVqAqL58Lk
  • google-site-verification=IBK89pknqoIxxnutxEQ-P0rZuo2CfCfEPZZojzWasyw
  • SBiht578TE/VvxL6GCzilpjFejNQ8YKndkHrRLy5ahmnEKEG91VcTSBEzK9HmGMzxmatd4QA+3YUfSR/pZmlIg==
  • iZTAu3Dc7HXwMPiBnaguuYGSVa99SnY4FtaY0ZTIMl5g4dmU+HIFCOGBvVCK1m0wXy+IRSg1dJpNPRQSJNq6Xg==
  • j9K5V4d
  • smartsheet-site-validation=794dhE_h7dE_ivcko_-kI1mb1XWE-GeZ
  • MS=ms49648266
  • rarv38ia7SZnqQuu79B25RgBuZ1PzkeKSTLQzwv9sj18DS1pnY5VwI3kDgd5ghA1wx4JOhhbCmDKbV9KwSGciA==
  • MS=ms51201586
  • v=spf1 include:spf-003c1002.pphosted.com include:spf.protection.outlook.com ip4:64.44.51.52 ip4:71.40.110.143 ip4:201.132.57.250 ip4:201.132.35.126 ip4:187.227.1.94 ip4:104.192.143.0/24 ip4:185.166.140.0/22 ip4:192.157.56.0/23 ip4:69.72.32.0/20 ip4:159.13" "5.224.0/20 ip4:198.61.254.0/23 ip4:143.244.80.0/20 include:emailsyd.freshservice.com include:relay.mailchannels.net ~all
  • _okpa98j0m456lynt0avsjj6tkwm7chp
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Teamviewer Proofpoint