Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

bluewaterstt.com

bluewaterstt.com

Discovered 2023-12-07 18:53 UTC
Est. attack date 2023-12-07
Country TT

Description:

Blue Waters Products Limited established in the year 1999 in Trinidad and Tobago has grown to be an iconic Caribbean brand over the years and is now the preferred brand of bottled purified drinking water in the Caribbean

Infostealer activity detected by HudsonRock

Compromised Employees: 2

Compromised Users: 8

Third Party Employee Credentials: 3


External Attack Surface: 8


Infostealer Distribution

DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abusegodaddy.com
MX Records
  • bluewaterstt-com.mail.protection.outlook.com. Microsoft 365
TXT Records
  • 9uul2g6dravk96md8hqipg7j6o
  • _s9xlfuy1veu3gaw0fsq6o329hgq3gdz
  • c23m4c25fscm7xvhsb86jvx45wzckhr5
  • _36v9lu79gzkpyuj3d7hjawuiargr1ci
  • v=spf1 ip4:190.58.31.130 ip4:181.188.28.94 ip4:190.58.237.220 ip4:181.188.28.92/30 ip4:200.7.93.80/28 ip4:181.188.28.48/28 ip4:190.58.178.128/28 ip4:190.58.237.208/28 include:spf.protection.outlook.com -all
  • sophos-domain-verification=325c900f9813464b08c1c6cd3ee257c920fdfd05a29b154c95122c5770d0dedf
  • pg5hjzg805f3bmfxdrvsdhbst78wmg3w
  • j1zqff8q9ksnrzvc8h91x5903x6jl6mw
Cloud / SaaS Services Detected
Sophos

Leak Screenshot:

Leak Screenshot