Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are impacting your business

Logo www.botiga.com.uy

Group: Apt73

Discovered by ransomware.live: 2024-11-08

Estimated attack date: 2024-11-08

Country: UY

Description:

An online store where you will find everything you need and want for you and your family. We have over 10,000 products to complement every stage o...


🕵️ Infostealer activity detected by HudsonRock

Compromised Employees: 0

Compromised Users: 238

Third Party Employee Credentials: 0


External Attack Surface: 24



DNS Records:

The following DNS records were found for the victim's domain.

WHOIS Emails
  • No emails found.
MX Records
  • aspmx.l.google.com.
  • alt3.aspmx.l.google.com.
  • alt4.aspmx.l.google.com.
  • alt1.aspmx.l.google.com.
  • alt2.aspmx.l.google.com.
  • botiga-com-uy.mail.protection.outlook.com.
TXT Records
  • v=spf1 include:servers.mcsv.net include:_spf.embluemail.com include:_spf.fortimailcloud.com MDAyMzg2Mjhib3RpZ2Eu include:web1.botiga.com.uy ip4:50.115.23.94 include:_spf.atlassian.net include:spf.mandrillapp.com include:spf.protection.outlook.com include:" "spf.sendinblue.com mx" " ~all
  • MS=ms21504551
  • atlassian-sending-domain-verification=28e80712-2de1-438b-9e6c-1cd064e6ffd6
  • facebook-domain-verification=6h8f91mkwht0tn2ban3akx407x5z0o
  • sendinblue-code:8d8d210ed6ba95277712b0446b40d064
Cloud / SaaS Services Detected
Mailchimp Microsoft 365 Mandrill Fortinet

Leak Screenshot:

Leak Screenshot