Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo Peruvian Connection

Group: Worldleaks

Discovered by ransomware.live: 2025-10-24

Estimated attack date: 2025-10-24

Country: US

Description:

[AI generated] Peruvian Connection is a high-end fashion retailer that specializes in luxurious alpaca wool and pima cotton clothing and accessories for women. Founded in 1976, the company blends modern, bohemian styles with traditional Andean knitting techniques. Its offerings include sweaters, dresses, skirts, and jewelry, among others. Peruvian Connection operates both online and through physical stores around the world.


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 15

Third Party Employee Credentials: 0


External Attack Surface: 10


Infostealer Distribution


DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • registrar-abuse cloudflare.com
MX Records
  • d246534b.ess.barracudanetworks.com.
  • d246534a.ess.barracudanetworks.com.
TXT Records
  • apple-domain-verification=qW1NC00ixfmCEfVfdDhzmOgV7tQ7b3KlaTDJqVI0Dy0
  • v=spf1 mx a:mail.peruvianconnection.com ip4:208.17.83.252 include:shopifyemail.com include:spf.ess.barracudanetworks.com include:spf.protection.outlook.com include:*.email.peruvianconnection.com include:*.onmicrosoft.com include:peruvianconnection.com -al" "l
  • upbjp4jgb3ai96rbgbe1lsffd4
  • MS=ms30968793
  • stripe-verification=DD215A223F4885075FA3B6031B3FF4D49F654A3EB007C2F6733C1C9629C0DF19
  • stripe-verification=dda2955d5f9a3741fa0e9982e380e34725bf350c5757c37b0e79a41750913383
  • loei7im8d01kuaio3qicfs7f0u
  • ssrcdbrovp6pm358b3ahdntabo
  • klaviyo-site-verification=TgNt6T
  • apple-domain-verification=BdzeMim4M7yja1wy
  • MS=13A742C497D92540D3C9E938B58E14B374360400
  • 3il9bnn0r82b4uuhfr9kr4uukj
  • ilhsl9cnpvpf0nu4ve19via4fc
  • shopify-verification-code=OqiIpTbUYJ9xhkbyDdaHMpemV8m9SI
  • _1xuynpm9x3d211744tok2vy1me2wmoi
  • facebook-domain-verification=kgg1rziqm9imwluedd9nozxwv05xkx
  • BMO2AJDQUQOUKKJRP5K5IW2NOO6BCR6H17SZWKMD
  • d279356214498fa91cbc83a4e2bb60c5
  • globalsign-domain-verification=k9Ynrvey0f7vBKpY3uxem9SokreOjpT_pFuBVv44SJ
Cloud / SaaS Services Detected
Apple Microsoft 365 Stripe

Leak Screenshot:

Leak Screenshot