Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo NATURESWEET.COM

Group: clop

Discovered by ransomware.live: 2025-02-27

Estimated attack date: 2025-02-27

Country: US

Description:

[AI generated] NatureSweet is a leading fresh produce brand specializing in high-quality, sweet-tasting tomatoes. Pioneering the market with innovative, technologically advanced agriculture practices, they provide a year-round supply of tomatoes. These include ranges like Cherubs, SunBursts, Glorys, and Constellation. NatureSweet greatly emphasizes sustainable farming methods and fair-trade principles, supporting local communities to cultivate a healthier world.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 11

Third Party Employee Credentials: 11


External Attack Surface: 8



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • domain.operations web.com
MX Records
  • mxa-003c1002.gslb.pphosted.com.
  • mxb-003c1002.gslb.pphosted.com.
TXT Records
  • v=spf1 ip4:201.144.13.131 ip4:64.44.51.52 ip4:201.144.13.139 ip4:201.144.13.141 ip4:71.40.110.143 include:spf.protection.outlook.com include:mailgun.org include:emailsyd.freshservice.com include:_spf.atlassian.net include:spf-003c1002.pphosted.com include" ":relay.mailchannels.net ~all
  • MS=ms49648266
  • MS=ms51201586
  • SBiht578TE/VvxL6GCzilpjFejNQ8YKndkHrRLy5ahmnEKEG91VcTSBEzK9HmGMzxmatd4QA+3YUfSR/pZmlIg==
  • apple-domain-verification=5g55GR6qGk9404Qm
  • atlassian-domain-verification=MGOte7DdXDrApzGDaIhDwSbFNTD6Bs5J54Scbdqzqeq/FV2cVbBjUCBL/FJI6VQZ
  • google-site-verification=IBK89pknqoIxxnutxEQ-P0rZuo2CfCfEPZZojzWasyw
  • google-site-verification=STSRoxbY-2VU-hKsXkZNNiBIvhV3snEe-sVqAqL58Lk
  • iZTAu3Dc7HXwMPiBnaguuYGSVa99SnY4FtaY0ZTIMl5g4dmU+HIFCOGBvVCK1m0wXy+IRSg1dJpNPRQSJNq6Xg==
  • j9K5V4d
  • rarv38ia7SZnqQuu79B25RgBuZ1PzkeKSTLQzwv9sj18DS1pnY5VwI3kDgd5ghA1wx4JOhhbCmDKbV9KwSGciA==
  • smartsheet-site-validation=794dhE_h7dE_ivcko_-kI1mb1XWE-GeZ
  • teamviewer-sso-verification=1bbc807cc0d8448793515432129a2673
Cloud / SaaS Services Detected
Apple Atlassian Microsoft 365 Teamviewer Mailgun Proofpoint