Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Nestoil

Group: Blacksuit

Discovered by ransomware.live: 2024-05-06

Estimated attack date: 2024-05-06

Country: NG


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 17

Compromised Users: 5

Third Party Employee Credentials: 11


External Attack Surface: 7



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • abuse-contact publicdomainregistry.com
  • contact privacyprotect.org
MX Records
  • nestoilgroup-com.mail.protection.outlook.com.
TXT Records
  • MS=ms93503635
  • MS=ms87244395
  • successfactors-site-verification=YmU1NWFiMzA5Y2M0NWNjODVkNTIwZDQzZWNmZDhlZjgyZmE5ZTRmMDA3ZGQ4OTZjZWE1OGFjY2Q1MDgzNWYzZA==
  • v=spf1 ip4:144.208.125.2 ip4:144.208.125.93 include:relay.mailchannels.net +a +mx +ip4:144.208.125.254 +include:spf.protection.outlook.com -all
Cloud / SaaS Services Detected
Microsoft 365

Leak Screenshot:

Leak Screenshot