Ransomware Group intelligence
Akira
ActiveTrack Akira with 1676 published victims and 2 known leak locations in a single intelligence view.
Overview
Akira is tracked by Breach House as a ransomware group with 1676 published victims.
United States is currently the most targeted country in this dataset.
2 known leak locations are currently associated with this group.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (2)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 2 | Onion service | Down checked 20m ago | akiralkzxzq2dsrzsrvbr2xgbbu2wgsmxryd4csgfameg52n7efvr2id.onion |
| Leak location 1 | Onion service | Down checked 21m ago | akiral2iz6a7qgd3ayp3l6yub7xx2uep76idk3u2kollpj5z3z636bad.onion |
Top Activity Sectors (18)
- Finance / Legal / Insurance 426
- Communication / Marketing 320
- Manufacturing / Engineering 170
- Services 128
- Construction / Real Estate 105
- Not identified 75
- Healthcare / Pharma 66
- IT 64
- Energy 39
- Hospitality / Food & Beverage / Tourism 32
- Transportation / Travel / Logistics 32
- Agriculture / Food 31
- Retail / E-commerce 27
- Telecommunications 27
- Education 25
- Public Sector 16
- NGOs / Associations 5
- null 1
Typical Attacks (29)
▼How Akira typically operates, as attributed by MITRE ATT&CK v19.2. Attributed via Akira, Akira, Akira _v2.
-
What they do: Akira uses valid account information to remotely access victim networks, such as VPN credentials.
What that means: Adversaries may obtain and abuse credentials of existing accounts as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
What they do: Akira uses compromised VPN accounts for initial access to victim networks.
What that means: Adversaries may leverage external-facing remote services to initially access and/or persist within a network.
-
T1047 Windows Management Instrumentation Execution
What they do: Akira will leverage COM objects accessed through WMI during execution to evade detection.
What that means: Adversaries may abuse Windows Management Instrumentation (WMI) to execute malicious commands and payloads.
-
T1059.001 PowerShell Execution
What they do: Akira has used PowerShell scripts for credential harvesting and privilege escalation.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1059.003 Windows Command Shell Execution
What they do: Akira executes from the Windows command line and can take various arguments for execution.
What that means: Adversaries may abuse the Windows command shell for execution.
-
T1106 Native API Execution
What they do: Akira executes native Windows functions such as GetFileAttributesW and `GetSystemInfo`.
What that means: Adversaries may interact with the native OS application programming interface (API) to execute behaviors.
-
What they do: Akira _v2 can create a child process for encryption.
What that means: Adversaries may create or modify system-level processes to repeatedly execute malicious payloads as part of persistence.
-
T1027.001 Binary Padding Stealth
What they do: Akira has used binary padding to obfuscate payloads.
What that means: Adversaries may use binary padding to add junk data and change the on-disk representation of malware.
-
T1036.005 Match Legitimate Resource Name or Location Stealth
What they do: Akira has used legitimate names and locations for files to evade defenses.
What that means: Adversaries may match or approximate the name or location of legitimate files, Registry keys, or other resources when naming/placing them.
-
T1480 Execution Guardrails Stealth
What they do: Akira _v2 will fail to execute if the targeted `/vmfs/volumes/` path does not exist or is not defined.
What that means: Adversaries may use execution guardrails to constrain execution or actions based on adversary supplied and environment specific conditions that are expected to be present on the target.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: Akira has disabled or modified security tools for defense evasion.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1558 Steal or Forge Kerberos Tickets Credential Access
What they do: Akira have used scripts to dump Kerberos authentication credentials.
What that means: Adversaries may attempt to subvert Kerberos authentication by stealing or forging Kerberos tickets to enable Pass the Ticket.
-
T1018 Remote System Discovery Discovery
What they do: Akira uses software such as Advanced IP Scanner and MASSCAN to identify remote hosts within victim networks.
What that means: Adversaries may attempt to get a listing of other systems by IP address, hostname, or other logical identifier on a network that may be used for Lateral Movement from the current system.
-
T1057 Process Discovery Discovery
What they do: Akira verifies the deletion of volume shadow copies by checking for the existence of the process ID related to the process created to delete these items.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1082 System Information Discovery Discovery
What they do: Akira uses the GetSystemInfo Windows function to determine the number of processors on a victim machine.
What that means: An adversary may attempt to get detailed information about the operating system and hardware, including version, patches, hotfixes, service packs, and architecture.
-
T1083 File and Directory Discovery Discovery
What they do: Akira examines files prior to encryption to determine if they meet requirements for encryption and can be encrypted by the ransomware.
What that means: Adversaries may enumerate files and directories or may search in specific locations of a host or network share for certain information within a file system.
-
T1135 Network Share Discovery Discovery
What they do: Akira can identify remote file shares for encryption.
What that means: Adversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of interest for Lateral Movement.
-
T1482 Domain Trust Discovery Discovery
What they do: Akira uses the built-in Nltest utility or tools such as AdFind to enumerate Active Directory trusts in victim environments.
What that means: Adversaries may attempt to gather information on domain trust relationships that may be used to identify lateral movement opportunities in Windows multi-domain/forest environments.
-
T1654 Log Enumeration Discovery
What they do: Akira _v2 can enumerate the trace, debug, error, info, and warning logs on targeted systems.
What that means: Adversaries may enumerate system and service logs to find useful data.
-
T1021.001 Remote Desktop Protocol Lateral Movement
What they do: Akira has used RDP for lateral movement.
What that means: Adversaries may use Valid Accounts to log into a computer using the Remote Desktop Protocol (RDP).
-
T1213.002 Sharepoint Collection
What they do: Akira has accessed and downloaded information stored in SharePoint instances as part of data gathering and exfiltration activity.
What that means: Adversaries may leverage the SharePoint repository as a source to mine valuable information.
-
T1560.001 Archive via Utility Collection
What they do: Akira uses utilities such as WinRAR to archive data prior to exfiltration.
What that means: Adversaries may use utilities to compress and/or encrypt collected data prior to exfiltration.
-
T1219 Remote Access Tools Command and Control
What they do: Akira uses legitimate utilities such as AnyDesk and PuTTy for maintaining remote access to victim environments.
What that means: An adversary may use legitimate remote access tools to establish an interactive command and control channel within a network.
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: Akira will exfiltrate victim data using applications such as Rclone.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: Akira encrypts files in victim environments as part of ransomware operations.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1489 Service Stop Impact
What they do: Akira _v2 can stop running virtual machines.
What that means: Adversaries may stop or disable services on a system to render those services unavailable to legitimate users.
-
T1490 Inhibit System Recovery Impact
What they do: Akira will delete system volume shadow copies via PowerShell commands.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
-
T1531 Account Access Removal Impact
What they do: Akira deletes administrator accounts in victim networks prior to encryption.
What that means: Adversaries may interrupt availability of system and network resources by inhibiting access to accounts utilized by legitimate users.
-
T1657 Financial Theft Impact
What they do: Akira engages in double-extortion ransomware, exfiltrating files then encrypting them, in order to prompt victims to pay a ransom.
What that means: Adversaries may steal monetary resources from targets through extortion, social engineering, technical theft, or other methods aimed at their own financial gain at the expense of the availability of these resources for victims.
Tools Observed (41)
▼Software Akira has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Credential theft
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Crypto Wallets (15)
▼| Address | Chain | Received (USD) | Payments |
|---|---|---|---|
bc1qr0pqfghr9cksfc5arr2rak3lt2y50v03pc76nh |
bitcoin | $997,461 | 2 |
bc1qfdzu6uv2nek524pe7lz4w0mxtt9898vfaegdaj |
bitcoin | $482,181 | 1 |
bc1q0dx45y82r5rt36sm38jv0k4dexwc4nj9z4ryw7 |
bitcoin | $446,073 | 2 |
bc1q9wnp6k7xxdqkdv4fa5ceyhv08espuskhu8ghq2 |
bitcoin | $351,883 | 1 |
bc1qknumj4326runqxfr58kg0s7v7gu9y5v5t9uv6h |
bitcoin | $298,537 | 2 |
bc1qr0txunr259we37wer7w6et33qyq0n6hv83pw24 |
bitcoin | $252,389 | 1 |
bc1q0lwpz2yufw3x9as6f679lwk8jx43g44683x5mc |
bitcoin | $229,395 | 4 |
bc1qhzd63mz9mfucak7yzfn65p6rcsgztnsqr3dak8 |
bitcoin | $150,205 | 1 |
bc1qqrsd02sqthm8gej8lfesgpx82saw7q2g5pjtah |
bitcoin | $149,891 | 1 |
bc1q4my6vqq8cg689drf9jccqudjclv67sz4cudkyd |
bitcoin | $139,534 | 1 |
bc1qpwwtck0zhzrj56fxeayz6wz5546nlp607qzpvh |
bitcoin | $109,655 | 2 |
bc1qghj85gz0dkr9jeucana3z4xu50ujtllj50rvj0 |
bitcoin | $106,115 | 2 |
+3 more wallets not shown (the 12 largest by amount received are listed).
Crowdsourced payment data from Ransomwhere, licensed CC BY 4.0. Figures are what has been reported and attributed to this family, not a confirmed total. Cite as: Cable, Jack. (2024). Ransomwhere: A Crowdsourced Ransomware Payment Dataset (1.1.0) [Data set]. Zenodo. https://doi.org/10.5281/zenodo.6512122
Ransom Notes (3)
▼The note this group leaves on a compromised machine. Click a filename to read it.
akira_readme_3.txt
Hi friends, Whatever who you are and what your title is, if you're reading this it means the internal infrastructure of your company is fully or partially dead, all your backups - virtual, physical - everything that we managed to reach - are completely removed. Moreover, we have taken a great amount of your corporate data prior to encryption. ATTENTION! Strictly prohibited: - Deleting files with .arika extension; - Replacing or renaming .arika and .akira files; - Using third party software to recover your systems. If you violate these rules, we cannot guarantee a successful recovery. Well, for now let's keep all the tears and resentment to ourselves and try to build a constructive dialogue. We're fully aware of what damage we caused by locking your internal sources. At the moment, you have to know: 1. Dealing with us you will save A LOT due to we are not interested in ruining you financially. We will study in depth your finance, bank & income statements, your savings, investments etc. and present our reasonable demand to you. If you have an active cyber insurance, let us know and we will guide you how to properly use it. Also, dragging out the negotiation process will lead to failing of the deal. 2. Paying us you save your TIME, MONEY, EFFORTS and be back on track within 24 hours approximately. Our decryptor works properly on any files or systems, so you will be able to check it by requesting a test decryption service from the beginning of our conversation. If you decide to recover on your own, keep in mind that you can permanently lose access to some files or accidentally corrupt them - in this case we won't be able to help. 3. The security report or the exclusive first-hand information that you will receive upon reaching an agreement is of great value, since NO full audit of your network will show you the vulnerabilities that we've managed to detect and use in order to get into, identify backup solutions and download your data. 4. As for your data, if we fail to agree, we will try to sell personal information/trade secrets/databases/source codes - generally speaking, everything that has a value on the darkmarket - to multiple threat actors at once. Then all of this will be published in our blog - akiral2iz6a7qgd3ayp3l6yub7xx2uep76idk3u2kollpj5z3z636bad[.]onion. 5. We're more than negotiable and will definitely find a way to settle this quickly and reach an agreement which will satisfy both of us. 6. Negotiations with Akira can only be conducted in a chat room, which you can access using the login details provided below or in the notes (a readme.txt file) in your systems. You should ignore any attempts (such as emails/social media messages, phone calls, etc.) to redirect you to another chat or email address (proton.me is often used by unauthorized individuals) on our behalf. 7. Be careful while working with recovery agencies as they often try to use your cyber incident to stuff their pockets. There are many risks for you to lose money and get nothing in return. If you're indeed interested in our assistance and the services we provide you can reach out to us following simple instructions: 1. Install TOR Browser to get access to our chat room - torproject[.]org/download/. 2. Paste this link - https://akiralkzxzq2dsrzsrvbr2xgbbu2wgsmxryd4csgfameg52n7efvr2id.onion/d/[snip] . 3. Use this code - [snip] - to log into our chat. Keep in mind that the faster you will get in touch, the less damage we cause.
akira_readme_2.txt
Hi friends, Whatever who you are and what your title is, if you're reading this it means the internal infrastructure of your company is fully or partially dead, all your backups - virtual, physical - everything that we managed to reach - are completely removed. Moreover, we have taken a great amount of your corporate data prior to encryption. ATTENTION! Strictly prohibited: - Deleting files with .arika extension; - Replacing or renaming .arika and .akira files; - Using third party software to recover your systems. If you violate these rules, we cannot guarantee a successful recovery. Well, for now let's keep all the tears and resentment to ourselves and try to build a constructive dialogue. We're fully aware of what damage we caused by locking your internal sources. At the moment, you have to know: 1. Dealing with us you will save A LOT due to we are not interested in ruining you financially. We will study in depth your finance, bank & income statements, your savings, investments etc. and present our reasonable demand to you. If you have an active cyber insurance, let us know and we will guide you how to properly use it. Also, dragging out the negotiation process will lead to failing of the deal. 2. Paying us you save your TIME, MONEY, EFFORTS and be back on track within 24 hours approximately. Our decryptor works properly on any files or systems, so you will be able to check it by requesting a test decryption service from the beginning of our conversation. If you decide to recover on your own, keep in mind that you can permanently lose access to some files or accidentally corrupt them - in this case we won't be able to help. 3. The security report or the exclusive first-hand information that you will receive upon reaching an agreement is of great value, since NO full audit of your network will show you the vulnerabilities that we've managed to detect and use in order to get into, identify backup solutions and download your data. 4. As for your data, if we fail to agree, we will try to sell personal information/trade secrets/databases/source codes - generally speaking, everything that has a value on the darkmarket - to multiple threat actors at once. Then all of this will be published in our blog - akiral2iz6a7qgd3ayp3l6yub7xx2uep76idk3u2kollpj5z3z636bad[.]onion. 5. We're more than negotiable and will definitely find a way to settle this quickly and reach an agreement which will satisfy both of us. If you're indeed interested in our assistance and the services we provide you can reach out to us following simple instructions: 1. Install TOR Browser to get access to our chat room - torproject[.]org/download/. 2. Paste this link - https://akiralkzxzq2dsrzsrvbr2xgbbu2wgsmxryd4csgfameg52n7efvr2id.onion/d/[snip] . 3. Use this code - [snip] - to log into our chat. Keep in mind that the faster you will get in touch, the less damage we cause.
akira_readme.txt
Hi friends, Whatever who you are and what your title is if you're reading this it means the internal infrastructure of your company is fully or partially dead, all your backups - virtual, physical - everything that we managed to reach - are completely removed. Moreover, we have taken a great amount of your corporate data prior to encryption. Well, for now let's keep all the tears and resentment to ourselves and try to build a constructive dialogue. We're fully aware of what damage we caused by locking your internal sources. At the moment, you have to know: 1. Dealing with us you will save A LOT due to we are not interested in ruining your financially. We will study in depth your finance, bank & income statements, your savings, investments etc. and present our reasonable demand to you. If you have an active cyber insurance, let us know and we will guide you how to properly use it. Also, dragging out the negotiation process will lead to failing of a deal. 2. Paying us you save your TIME, MONEY, EFFORTS and be back on track within 24 hours approximately. Our decryptor works properly on any files or systems, so you will be able to check it by requesting a test decryption service from the beginning of our conversation. If you decide to recover on your own, keep in mind that you can permanently lose access to some files or accidently corrupt them - in this case we won't be able to help. 3. The security report or the exclusive first-hand information that you will receive upon reaching an agreement is of a great value, since NO full audit of your network will show you the vulnerabilities that we've managed to detect and used in order to get into, identify backup solutions and upload your data. 4. As for your data, if we fail to agree, we will try to sell personal information/trade secrets/databases/source codes - generally speaking, everything that has a value on the darkmarket - to multiple threat actors at ones. Then all of this will be published in our blog - https://akiral2iz6a7qgd3ayp3l6yub7xx2uep76idk3u2kollpj5z3z636bad.onion. 5. We're more than negotiable and will definitely find the way to settle this quickly and reach an agreement which will satisfy both of us. If you're indeed interested in our assistance and the services we provide you can reach out to us following simple instructions: 1. Install TOR Browser to get access to our chat room - https://www.torproject.org/download/. 2. Paste this link - https://akiralkzxzq2dsrzsrvbr2xgbbu2wgsmxryd4csgfameg52n7efvr2id.onion. 3. Use this code - [snip] - to log into our chat. Keep in mind that the faster you will get in touch, the less damage we cause.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (1676)
Search, filter and paginate the victim timeline for Akira. Showing 1401–1500 of 1676.
| Type | Target | Discovered | Country | Business Category | Intel Link |
|---|---|---|---|---|---|
| Ransomware | Waterbury Newton id13170 View details | Canada | Finance / Legal / Insurance | — | |
|
A full service law firm located in Kentville, Nova Scotia. We wil l upload files of their client soon. |
|||||
| Ransomware | PCI Developments id13166 View details | Canada | Construction / Real Estate | — | |
|
PCI Developments is an award-winning Vancouver-based real estate developer of complete urban communities. 570Gb of data will be av ailable here. Client agreements, marketing and financial files, b uildings projects, confidential agreements and reports. Some pers onal files. |
|||||
| Ransomware | Beckett Thermal Solutions id13165 View details | United States | Services | — | |
|
Beckett Thermal Solutions is a global pioneer of combustion techn ologies. 11 Gb of data. Lots of projects files, employees names, addresses, emails and other HR information. |
|||||
| Ransomware | Utility Datacenter id13164 View details | United States | Energy | — | |
|
Utility Datacenter is a technology integrator focused on helping organizations and administrators through innovation and virtualiz ation. We will upload data of this datacenter here soon. You will find lots of project files, client information, employee person al files etc. |
|||||
| Ransomware | Agron (Five Ten) Adidas TERREX id13142 View details | Germany | Finance / Legal / Insurance | — | |
|
Five Ten or Agron is a German manufacturer of mountain biking, cl imbing, and trail hiking shoes. Originally an American brand foun ded in California in 1985 by Charles Cole, Five Ten became one of the top-selling climbing shoe manufacturers worldwide by October 2011. Adidas purchased the company in November 2011. We are goin g to share 20Gb of data of the company that is closely associated with the most famous brand in the world - Adidas. Finance, human resources, marketing and other business info in will be availabl e soon. |
|||||
| Ransomware | Lindermayr id13069 View details | Germany | Services | — | |
|
Quality awareness, reliability and technical innovation have char acterized the Lindermayr company for more than 50 years. They ope rate in the independent business areas of building construction, civil engineering, transportation, prefabrication, gravel works a nd haulage services guarantees you comprehensive solutions from a n expert source. 4GB of their internal data will go public soon. |
|||||
| Ransomware | Perfumes & Companhia id13068 View details | Portugal | Public Sector | — | |
|
Perfumes & Companhia is a company that operates in the Cosmetics industry. It employs 501-1,000 people and has about $500M of reve nue. The company is h eadquartered in Lisbon, Lisbon, Portugal. 2 5GB of their data will go public soon. |
|||||
| Ransomware | TETRA Technologies, Inc. id13043 View details | United States | IT | — | |
|
TETRA Technologies, Inc., operates as a diversified oil and gas s ervices company. It operates through four divisions: Fluids, Prod uction Testing, Compression, and Offshore. We are going to share very interesting 40GB of data. Numerous personal documents like p assports, birth certs, DLs... Confidential agreements, NDAs and e verything like that are widely represented. We will upload the fi les this week. |
|||||
| Ransomware | New Balance Commodities id13016 View details | United States | Communication / Marketing | — | |
|
New Balance Commodities provides grain processing and cattle feed ing services by mediating the void of communication, logistics, a nd information between the two industries. Lot's of agreements, r eports, financial information, bank transactions, vendors informa tion and so on. 24GB in total will be available soon. |
|||||
| Ransomware | IPM Group (Multimedia Information & Production Company) id12969 View details | Belgium | Communication / Marketing | — | |
|
IPM Group is a major Belgian media and internet services company active in news, entertainment, advertising, gaming and Innovation . We will share 40Gb of data soon. A lost of internal business fi les containing financial information, contracts, employees files, confidential agreements and information about some Belgian media companies. |
|||||
| Ransomware | Arge Baustahl id12945 View details | Australia | Construction / Real Estate | — | |
|
Since 1949, the company ARGE BAUSTAHL EISEN BLASY NEPTUN GmbH has stood for outstanding performance in the construction industry. The files of the organization will be available for downloading s oon. There is a lot of internal business information in the archi ve like projects, drawings etc. |
|||||
| Ransomware | Reinhold Sign Service id12922 View details | United States | Finance / Legal / Insurance | — | |
|
Reinhold Sign Service is Green Bay’s go-to for vehicle graphics a nd commercial sign manufacturing, installation, and repair. The f iles will be uploaded soon. Financial and accounting data, drawin gs, some info of clients and so on. |
|||||
| Ransomware | Panasonic Australia id12895 View details | Australia | Communication / Marketing | — | |
|
Panasonic Australia is a market leader in the field of consumer e lectronics, and B2B solutions. The reliability and reputation of Panasonic products has ensured that they are part of the everyday lives of many. Their cybersecurity was not very reliable so we a re going to share with you the files we took from them. Informati on about projects and confidential agreements, as well as many ot her data from this company with a sound name will soon be availab le for downloading. |
|||||
| Ransomware | E-T-A id12880 View details | Germany | Communication / Marketing | — | |
|
E-T-A is the world market leader for circuit breakers for equipme nt protection and circuit protectors. 24GB of data containing per sonal information of employees, clients information, NDAs, financ ial and accounting data. We will upload the files soon. |
|||||
| Ransomware | Mahindra Racing id12815 View details | India | Finance / Legal / Insurance | — | |
|
Mahindra Racing became one of the founding teams of the FIA Formu la E Championship, the worlds first all-electric, street racing s eries. 114GB of data will be released soon. We got information on pilots and other employees (passports and other), financial stat ements, accounting, NDAs and other information like car setups an d so on. |
|||||
| Ransomware | Anderson Mikos Architects id12801 View details | United States | Healthcare / Pharma | — | |
|
Anderson Mikos Architects has created a name for themselves in th e architecture healthcare industry since being established in 198 5. We have 15GB of their data for uploading. HR files with person al and medical information of employees, financial data, accounti ng, projects and so on. |
|||||
| Ransomware | TriLiteral id12791 View details | United States | Communication / Marketing | — | |
|
TriLiteral LLC (TLT) is a private company and full-service third party logistics provider specializing in the distribution of book s for University Presses and Academic Publishers. 24GB of data wi ll be available soon. Detailed accounting data, client info and o ther business files. |
|||||
| Ransomware | New Hampshire PublicRadio id12790 View details | United States | Public Sector | — | |
|
Since 1981, New Hampshire Public Radio has shaped the media lands cape in the Granite State and beyond. The files of the organizati on will be in public soon. You could see and download them here o n our blog. Financial and accounting data, grants and much other information. Everything is about 35GB. |
|||||
| Ransomware | Faultless Brands id12782 View details | United States | Communication / Marketing | — | |
|
Faultless Brands is a manufacturing business, producing laundry, household cleaning products, air care, and lawn and garden produc ts. A lot of HR files with employees personal data, customers inf ormation, accounting files, confidential agreements, medical info rmation and so on. |
|||||
| Ransomware | DreamWall id12781 View details | Belgium | Healthcare / Pharma | — | |
|
Born from a partnership between Dupuis and RTBF, DreamWall, an an imation and graphics studio located in Charleroi (Belgium), is ac tive in different markets: Media Solutions: Mastered, complete an d unique expertise in studios and virtual creations. Files with p ersonal data, medical files, contracts, agreements with other com panies, financial data. Everything is about 15GB. We will make th e files available soon. |
|||||
| Ransomware | Excel Security Corp. id12780 View details | United States | Finance / Legal / Insurance | — | |
|
Excel Security Corp. is an internationally respected provider of security services. How did it happen that they themselves were le ft without security? Everything for customers? Anyways, 150GB of data will be accessible here soon. Personal files of employees, S SNs, drivers licenses, phone numbers, emails, financial data, cus tomers information, NDAs, confidential agreements and so much oth er stuff. |
|||||
| Ransomware | MagicLand id12776 View details | Italy | Finance / Legal / Insurance | — | |
|
Since its creation, MagicLand has recorded about 3 million unique visitors. In 2014, with 800,000 visitors, Rainbow MagicLand was confirmed as the third theme park in Italy. Within the next few d ays Rainbow MagicLand will be confirmed to cause the leak persona l data: bank information (swift codes, BIC, IBAN), EU ID numbers, accounting and HR files. |
|||||
| Ransomware | Western Dovetail id12769 View details | United States | Healthcare / Pharma | — | |
|
Western Dovetail is committed to maintaining tradition in the mod ern industry. Architects, designers and craftsmen recognize dovet ail drawers as the hallmark of excellence in casework. A few GB o f their data will be available here. Employee info (address, emai l, phone, relatives contacts...), tax and payment info, a bit of medical information. |
|||||
| Ransomware | Avelina id12749 View details | United States | Agriculture / Food | — | |
|
Avelina supplies product packaged to retailers and the food servi ce industry, in addition to providing raw materials to the main c ompanies in the food industry. 30Gb of data will be released. You will find there much client and competitor information, financia l docs with pieces of personal data. |
|||||
| Ransomware | Brett Slater Solicitors id12748 View details | Australia | Other | — | |
|
At Brett Slater Solicitors they specialize in taking on the more difficult and challenging cases. This one seem to be the most dif ficult for them as we are going to upload numerous personal docum ents of their clients from different countries. Besides that ther e are a lot of court and hearings documents and similar data. |
|||||
| Ransomware | OTR id12747 View details | Communication / Marketing | — | ||
|
When you select OTR, Inc. as your transfer agent, you've done mor e than acquire a service provider - you've gained a partner, one who works diligently to help you succeed in loosing your data. WE will upload their files soon. Lots of business files like financ ials, contracts and agreements can be found in the archives. |
|||||
| Ransomware | Vannguard Utility Partners id12698 View details | United States | Energy | — | |
|
Vannguard provides locating and meter reading services to utiliti es in the Midwest. About 30Gb of data will be available soon. Lot s of employment documents with personal information, confidential agreements, customers and projects information and much other st uff. |
|||||
| Ransomware | Newman Ferrara id12680 View details | United States | Finance / Legal / Insurance | — | |
|
Newman Ferrara maintains a multifaceted practice based in New Yor k City with attorneys specializing in complex commercial and mult i-party litigation, securities fraud and shareholder litigation, consumer protection, civil rights, and real estate. More than 45G B of data will be publicly available soon. Court processes, heari ngs and personal data of clients of course. Lots of interesting f iles. |
|||||
| Ransomware | IZOMAT Praha id12679 View details | Czechia | Communication / Marketing | — | |
|
The business corporation IZOMAT stavebniny s. r. o. was founded i n 1991 and has long been one of the most important suppliers of b uilding materials in the Czech Republic. 200GB of data will be av ailable on this blog. Contracts, clients information with details , agreements and so on. |
|||||
| Ransomware | GRANVILLE FOOD CARE LIMITED id12678 View details | Ireland | Agriculture / Food | — | |
|
Granville Food Care Limited is one of the leading cold storage pr oviders to the food industry in Northern Ireland working with pro cessors including ABP, Moy Park, Karro, Foyle and Dunbia. About 2 0Gb of data will be released. HR files, accounting, health and sa fety confidential files, customers information. |
|||||
| Ransomware | Marigin id12634 View details | Switzerland | Healthcare / Pharma | — | |
|
Marigin is a veterinary center in Zurich. Here you will find the most modern personal data of employees and pets owners. Also, var ious operational information will be available as well. Everythin g is about 60GB. |
|||||
| Ransomware | Fiskars Group id12542 View details | Finland | Communication / Marketing | — | |
|
Fiskars Group is a Finnish group company. The company is a global supplier of branded consumer products for the home, garden, and outdoors. We've taken 2TB of data. Should I list everything inter esting what we copied from their servers? I suppose it is obvious that there are lots of different sensitive documents you are int erested in. We'll provide you with the access to the files as soo n as possible. |
|||||
| Ransomware | Bruno generators (Italian manufacturing) id12541 View details | Italy | Manufacturing / Engineering | — | |
|
Bruno's line of products includes compact, reliable and ultra-sil ent generating sets. We have made in Italy production. 40GB of da ta will be released. Clients information, financial documents, pr ojects information etc. |
|||||
| Ransomware | Reading Electric id12487 View details | United States | Finance / Legal / Insurance | — | |
|
Reading Electric is a leading supplier of electro-mechanical equipment, services, and problem solver for Industrial and Commercialcustomers. 82Gb of data will be available for downloading. You will find employees personal documents, confidential agreements, contracts inside and financial data inside. |
|||||
| Ransomware | M2E Consulting Engineers id12308 View details | United States | Services | — | |
|
M2E Consulting Engineers is a multi-disciplinary firm providing engineering services toits partners across major markets and locations. Lots of confidential data, personal documents, client information, projects. We'll make the files available for you soon. |
|||||
| Ransomware | Imedi L id12234 View details | Georgia | Healthcare / Pharma | — | |
|
Imedi L is a health insurer and is part of the largest healthcaregroup in Georgia. 18GB of signed agreements, ID's with personal data, accounting information, payments\bank transactions details.We will upload the files soon. |
|||||
| Ransomware | Studio Libeskind id12216 View details | United States | Construction / Real Estate | — | |
|
Studio Libeskind is a world-renowned architecture studio composedof architects and designers that believe architecture is a practice of optimism. 18Gb of files of this organization will be available for everyone in the world. A lot of joint projects information, accounting files, passports, contracts, agreements and so on. |
|||||
| Ransomware | GCH Hotel Group id12197 View details | Germany | Hospitality / Food & Beverage / Tourism | — | |
|
The GCH Hotel Group is one of the leading hotel management companies in Germany. 45GB of data to be uploaded. Personal docs of clients, NDAs, numerous financial documents. |
|||||
| Ransomware | tudio Libeskind id12196 View details | United States | Construction / Real Estate | — | |
|
Studio Libeskind is a world-renowned architecture studio composedof architects and designers that believe architecture is a practice of optimism. 18Gb of files of this organization will be available for everyone in the world. A lot of joint projects information, accounting files, passports, contracts, agreements and so on. |
|||||
| Ransomware | Myers Automotive Group id11721 View details | Canada | Manufacturing / Engineering | — | |
|
Myers Automotive Group sales and services automobiles. The company is headquartered in Ottawa, Ontario. Files of this company willbe available for downloading soon. Agreements, clients and employees information, detailed accounting and other data. |
|||||
| Ransomware | Serfilco, RP Adams, Baron Blakeslee, Pacer, Service Filtration of Canada, Polymar. id11709 View details | Canada | Hospitality / Food & Beverage / Tourism | — | |
|
Recently we've obtained data of a group of industrial manufacturers and here they are: Serfilco, RP Adams, Baron Blakeslee, Pacer,Service Filtration of Canada, Polymar. Accounting and financial data, agreements, contracts, employees and partners personal dataand other business internal data. |
|||||
| Ransomware | Wright Brothers Construction id11695 View details | United States | Construction / Real Estate | — | |
|
Wright Brothers Construction services include grading, site development, highway and bridge construction, landfill construction, asphalt production and paving, aggregate processing, commercial concrete services, and industrial maintenance services. As this company doesn't care about the data we've taken from them, we will share it with those who do. 12GB of data will be uploaded here. A lot of financial data, accounting, insurance, employees files. |
|||||
| Ransomware | Medequip Assistive Technology id11694 View details | United Kingdom | IT | — | |
|
Medequip Assistive Technology is the leading provider of servicesand equipment to local authorities and the NHS across the UK in delivering a wide range of equipment and support to people in their own homes. 50GB of data will be available soon. You find personal information (NINOs, birth certificates, driver licenses etc.), confidential reports and agreement and other internal business information. |
|||||
| Ransomware | Lotz Trucking id11692 View details | United States | Transportation / Travel / Logistics | — | |
|
Lotz Trucking specializes in the bulk business and offer a wide range of services with flatbeds, vans, hopper bottom and dump trailers. We are going to make available their files of ~15GB size. Lotz of confidential agreements, NDAs, employees personal information. |
|||||
| Ransomware | Studio LAMBDA id11691 View details | Italy | Education | — | |
|
Studio Lambda Engineering for safety and the environment, Matera,Milan, company and construction site safety, environment and sustainability, energy, instrumental surveys, training. Scan of personal documents of employees, NDAs, financial files, agreements and so on. We'll upload the files soon. |
|||||
| Ransomware | Best Reward Federal Credit Union id11669 View details | United States | Finance / Legal / Insurance | — | |
|
Best Reward Federal Credit Union offers low-rate loans, deposit accounts, VISA cards and mobile services. Lots of financial documents, personal information including thousands of members names, SSNs, addresses, emails, phones. We are going to share everything soon. |
|||||
| Ransomware | Snchez-Betances Sifre & Muñoz-Noya id11635 View details | United States | Finance / Legal / Insurance | — | |
|
Snchez-Betances, Sifre & Muñoz-Noya is a boutique law firm that resulted from the merger between Snchez-Betances & Sifre and Lespier Muñoz-Noya & Rivera in 2004. All the files we've taken from their network will be published soon. Personal information of employees, information of partners, business info. |
|||||
| Ransomware | Missouri Electric Cooperatives id11599 View details | United States | Services | — | |
|
Missouri Electric Cooperatives is a statewide association established to protect, support and serve the interests and business practices of our 47 member electric co-ops and to help ensure the 2 million co-op members in rural Missouri receive reliable and affordable electricity. Files of the organization will soon be available for downloading. Information of employees (phone, addresses, photos, etc), business partners, accounting data and so on. |
|||||
| Ransomware | Samart id11595 View details | Thailand | Telecommunications | — | |
|
Samart Group or simply Samart is a Thai group of companies which focuses on telecommunication, Consumer electronics industry. We will publish about 300GB of data soon as these guys do not care much their files. There lots of personal documents especially passports scans, NDAs, confidential agreements, lists of customers andmuch more interesting. |
|||||
| Ransomware | Consilux (Brazil) id11592 View details | Brazil | IT | — | |
|
Consilux Tecnologia is a modern company attentive to constant technological innovations, maintaining the development of innovativetechnologies capable of providing facilities, quality of life, safety and convenience to the population. 40Gb of data will be available soon. Employee personal documents, projects, agreements, abit of client info, NDA and so on. |
|||||
| Ransomware | PGF Technology Group id11554 View details | United States | IT | — | |
|
PGF Technology Group is a contract manufacturer for printed circuit boards, cables and wire harness assemblies. We share their files soon as the company doesn't care about the data. Employees SSNs, financial data, lots of NDAs, projects information much more. |
|||||
| Ransomware | REV Drill Sales & Rentals id11553 View details | United States | Retail / E-commerce | — | |
|
REV Drill Sales & Rentals provides economical drilling solutions and supports clients from start to finish in Frederick, MD. HR, financial docs, agreements, employee information and so on. We'll upload everything soon. |
|||||
| Ransomware | Inspection Services id11513 View details | United States | Services | — | |
|
Inspection Services, Inc. (ISI) is a minority woman-owned business delivering industry-leading special inspection and materials testing services throughout California. Detailed employee personal information (docs scans and forms), agreements, trainings results, dispatch letters and tons of business papers. |
|||||
| Ransomware | Radiant Canada id11512 View details | Canada | Services | — | |
|
Radiant Canada is the result of integrating 30 years of transportation management expertise with warehousing services experience. 25GB for uploading here. A lot of financial data, personal information of employees, clients info and so on. |
|||||
| Ransomware | Control Technology id11456 View details | United States | IT | — | |
|
Control Technology Inc designs and manufactures advanced control,communications, and input & output products for industrial process automation. Numerous agreements, licenses and other internal business info. We'll share the files approximately next week. |
|||||
| Ransomware | Lakes Precision id11436 View details | United States | Communication / Marketing | — | |
|
Lakes Precision provides a wide variety of value added services and programs to assist our customers. Lot's of financial data, NDAs, employee information. We'll provide access to their data soon. |
|||||
| Ransomware | Santa Cruz Seaside id11434 View details | United States | Finance / Legal / Insurance | — | |
|
The company operates the Santa Cruz Boardwalk amusement park in California, which has been touted the "Coney Island of the West". We will share their files soon. Many financial documents, HR, various reports and other business data. |
|||||
| Ransomware | Mermet id11406 View details | United States | Communication / Marketing | — | |
|
Mermet has been dedicated to producing quality fabrics that meet and exceed customer's expectations. About 30GB of data will be available soon. You will find there confidential HR files with personal information and other interesting on the company. |
|||||
| Ransomware | Koi Design id11372 View details | United States | Services | — | |
|
Koi Design LLC is a clothing company. The company's line of business includes the wholesale distribution of women's, children's, and infants' clothing and accessories. We are going to share with you 30Gb of their databases of business files, payments information, agreements, projects and so on. |
|||||
| Ransomware | Tanis Brush id11371 View details | United States | Manufacturing / Engineering | — | |
|
Regal Manufacturing was established in 1934. Quality brushes and brooms with personalized service for our customers is the foundation upon which Regal Manufacturing Company was built, and that quality and service continues today. You will be able to see how itworks from the inside when we upload their files here. Business docs, NDAs, agreemnts, some forms with personal information can be found there. |
|||||
| Ransomware | Calida id11361 View details | Australia | Finance / Legal / Insurance | — | |
|
Calida was established in 2008 as a high end retail, hospitality and commercial building and project management company. 26GB of data will uploaded soon. HR files, financial and accounting data, some project information can be found inside. |
|||||
| Ransomware | Vita IT id11360 View details | Belize | Communication / Marketing | — | |
|
Vita IT is an Integrator and IT Service Provider made up of highly competent professionals with extensive experience in the IT market. We will provide access to their data soon. Operational data and personal information can be found in the archive. |
|||||
| Ransomware | European Centre for Compensation id11359 View details | Poland | Finance / Legal / Insurance | — | |
|
Europejskie Centrum Odszkodowan is involved in claim payments from parties who may have caused to the accident or insured the loss. These guys decided to make their data available for everyone and we will help them. In the 72GB archive you will find enormous number of files: scans of business, judicial, insurance documents,court hearings, personal documents of employees and clients. |
|||||
| Ransomware | Summit Almonds id11214 View details | United States | Communication / Marketing | — | |
|
Summit Almonds assists California almond, walnut and othertree nut growers and handlers in marketing high quality almonds at prices to our partners and end users around the world. 33Gb of data will be released here. Personal docs, NDAs, forms with personal information and a DB with more than 10000 lines of phones and emails. |
|||||
| Ransomware | Infosoft id11116 View details | New Zealand | IT | — | |
|
Infosoft is a New Zealand owned and operated software developmentcompany that provides an integrated range of products and services spanning software design, development, implementation and support. Their data will be available for downloading soon. Numerous operational files, projects, documents with personal information. |
|||||
| Ransomware | Medical Billing Specialists id11114 View details | United States | Healthcare / Pharma | — | |
|
Medical Billing Specialists helps U.S. practices from California to Massachusetts with medical billing solutions and online medical billing software to earn significantly more revenue and reduce expenses. Over 120GB of data will be uploaded here on our blog soon. You will find detailed employees and patients information - addresses, DOB, emails, background checks, phones, correspondence with clients, NDAs and so on. |
|||||
| Ransomware | Telecentro id11113 View details | Argentina | Finance / Legal / Insurance | — | |
|
TeleCentro introduced Triple Play in Argentina, and has grown to become the leader in this segment in the country. 40GB of data will be released soon. Many operational files, HR documents with employees personal information, financials and everything. |
|||||
| Ransomware | Steiner (Austrian furniture makers) id11112 View details | Austria | Communication / Marketing | — | |
|
Individual pieces of furniture combining creativity, aesthetics and function are the company's hallmark. About 20Gb of their data will be available for downloading soon. HR documents, contracts, clients info and projects can be found inside. |
|||||
| Ransomware | America Chung Nam orACN id11092 View details | United States | Public Sector | — | |
|
ACN is one of the world's largest exporters of recovered paper inthe United States, and a leading exporter across the globe in Europe and Asia. We are going to upload their 450Gb of data here soon. You will see operation documents, information about their clients around the globe, contracts, HR files with employees documents and tons of other papers. |
|||||
| Ransomware | CoreData id11045 View details | Canada | Finance / Legal / Insurance | — | |
|
CoreData is developing software systems for engineers and engineering companies. Their files will be uploaded soon. Non-dicslosures, financial data, documents with personal info and so on. |
|||||
| Ransomware | Gansevoort Hotel Group id11044 View details | Tuvalu | Hospitality / Food & Beverage / Tourism | — | |
|
Gansevoort Hotel Group delivers hotels that marry the best of thelocal neighborhood with prominent art, design, tech and local heritage as well as our brand legacy. Passports, driver licenses, insurance cards, SSNs and other data will be available here. |
|||||
| Ransomware | DTN Management Company id11012 View details | United States | Services | — | |
|
DTN Management Company is a recognized leader in apartment operations with a portfolio of over 106 communities across Michigan's best markets. These guys are not interested in saving their 68GB of data with all the passport scans, SSNs, driver licenses of their employees and partners. |
|||||
| Ransomware | Bjuvs kommun id10976 View details | Sweden | NGOs / Associations | — | |
|
We will upload almost 200GB of Bjuvs kommun organization. Confidential documents, contracts, agreements, personal HR files and so on. |
|||||
| Ransomware | Quik Pawn Shop id10939 View details | United States | Retail / E-commerce | — | |
|
Founded in 1978, Quik Pawn Shops™ operates in 15 locations in Montgomery, Birmingham, Mobile and Tuscaloosa areas. We obtained 140Gb of files of this organization and make them available for you soon. There is also a BD with complete information of their customers. Millions of lines with DOB, addresses, ssns, financials transactions and stuff like that. |
|||||
| Ransomware | PEER Consultants id10938 View details | United States | Manufacturing / Engineering | — | |
|
PEER, a full-service environmental engineering consulting firm, provides personalized service to our valuable clients, fosters andmaintains long-term partnerships, and hires passionate and diverse team members. 20Gb of data will be uploaded lots of documents with personal information. Passports, SSNs, driver licenses, confidential agreements, NDAs and so on. |
|||||
| Ransomware | Lancaster id10926 View details | United States | Finance / Legal / Insurance | — | |
|
Lancaster is the premier paint sundry distributor, of North America, South America and the Caribbean. We are going to upload theirdata soon. Many accounting and HR documents, contracts and otherbusiness papers. |
|||||
| Ransomware | Desarrollo De Tecnologia y Sistemas Ltda id10925 View details | Chile | Construction / Real Estate | — | |
|
DTS is a Chilean company founded in 1991, leader in the provisionof services, the development of technologies, and systems integration. 20Gb of zippped data will be available for downloading soon. Lots of NDAs, confidential documents, papers with personal information. |
|||||
| Ransomware | BRAM Auto Group id10879 View details | United States | Public Sector | — | |
|
BRAM Auto Group is one of the largest family owned businesses in the Tri-State area with innovative dealerships throughout NY and NJ. 85GB of files are going to be uploaded here soon. Passports, SSNs, driver licenses, clients information and much of operational data. |
|||||
| Ransomware | Asam id10859 View details | Romania | Manufacturing / Engineering | — | |
|
A reliable partner on the market of spare parts and industrial equipment, ASAM Iasi was founded in 1924 as a Maintenance Workshop.Financial data, information of clients and customers, documents with personal information of employees, HR and other business docs will be available soon. |
|||||
| Ransomware | Nekoosa School District id10844 View details | United States | Education | — | |
|
Nekoosa School District is a public school district located in NEKOOSA, WI. Files of this district will be available for downloading soon. Some personal information of staff and students can be found inside. Addresses, phone numbers, scans of documents and so on. |
|||||
| Ransomware | Sanok Rubber CompanySpólka Akcyjna id10805 View details | Poland | Manufacturing / Engineering | — | |
|
Sanok Rubber Company SA is a European manufacturer in the production of rubber, rubber-metal products and combinations of rubber with other materials. Almost 600GB of their files will be available soon. You can find personal documents, accounting information, many confidential files, information about clients and much more. |
|||||
| Ransomware | Distecna id10719 View details | Argentina | Communication / Marketing | — | |
|
Distecna provides wholesale and distribution of technology products. Operation files of the company will be available for downloading soon. Their financials are represented in great detailed. |
|||||
| Ransomware | TeraGo id10716 View details | Canada | Services | — | |
|
TeraGo provides businesses across Canada with secure cloud services, date recovery, and business grade internet. 45Gb of data willbe uploaded soon. You will find there lots of client agreements with personal information. Many files with financial information and everything that a provider can get from its customers. |
|||||
| Ransomware | AVer Information id10699 View details | Taiwan, Province of China | Communication / Marketing | — | |
|
AVer Information is an education, business communication, and wireless presentation technology manufacturer. we are going to upload about 40Gb of their files. There are some HR files with personal information, numerous signed NDAs, confidential agreements, projects information, legal files and so on. |
|||||
| Ransomware | Celeste id10698 View details | France | Telecommunications | — | |
|
Celeste is focused on providing high speed fiber optic network solutions. We are now focused on providing you with the files takenfrom their network. You can find there operational files, lists of clients with information, some personal information and other different files. We will make them accessible soon. |
|||||
| Ransomware | VCS Observation id10673 View details | Netherlands | Healthcare / Pharma | — | |
|
VCS Observation deploys effective video management technology fortheir clients. With an eye for a sustainable way of working. In public and private spaces and in healthcare. We are going to upload every files we obtained from their servers, so maybe you can find yourselves in their data. Lots of operating files, clients data etc. |
|||||
| Ransomware | Borah Goldstein Altschuler Nahins & Goidel id10640 View details | United States | Communication / Marketing | — | |
|
Borah, Goldstein, Altschuler, Nahins & Goidel, P.C. specializes in residential and commercial properties law. All the info we haveon their clients and projects will be uploaded here. Lot's of documents with pieces of personal information could be found in thefiles. |
|||||
| Ransomware | Sefin id10625 View details | Italy | Communication / Marketing | — | |
|
Sefin has many years' experience in substitutive optical archiving projects, being one of the first companies in Italy proposing document dematerialization and taking full responsibility of the whole process of substitutive archiving. Their files will be available soon. You will find different agreements, non-disclosures, personal documents and other interesting files. |
|||||
| Ransomware | Castilleja School id10601 View details | United States | Education | — | |
|
Castilleja School is an independent school for girls in grades six through twelve. We are going to upload about 10GB of data containing various files containing education process and administrative information. Numerous files with information about students. |
|||||
| Ransomware | Get Away Today id10600 View details | United States | Transportation / Travel / Logistics | — | |
|
Get Away Today is an online travel booking service. We've taken afew databases with personal information of their clients. Thousand of lines. We'll make it available soon. |
|||||
| Ransomware | Safe Plating id10599 View details | United States | Communication / Marketing | — | |
|
Leading Precious and Non-Precious metal plating in Southern California with 8 reel to reel lines as well as a rack and barrel lines. Their files will be available for downloading soon. Many project files, nda and other business docs. |
|||||
| Ransomware | Brazilian Business Park id10580 View details | Brazil | Services | — | |
|
With a complete infrastructure condominium, we offer additional business services, always striving to be ahead of customer needs by and always offering new services. One of their services is to spread personal information of customers. We are going to upload ¬20GB of files of various kinds. Accounting, operational files, projects, agreements and confidential ones, and many others. |
|||||
| Ransomware | Valley TeleCom Group id10578 View details | United States | Telecommunications | — | |
|
Valley TeleCom is a leader in state-of-the-art broadband servicesthroughout service exchanges in Arizona and New Mexico with a wide range of products to fit the varied needs of current and future subscribers. We've obtained about 310GB of their files. Lots ofndas, confidential agreements, customers information, operational files and so on. We'll share everything soon. |
|||||
| Ransomware | Lush id10574 View details | United Kingdom | Communication / Marketing | — | |
|
Founded in 1995 and headquartered in Poole, United Kingdom, Lush is a cosmetic store specializing in the retail of bath bombs, hair products, makeup and more. 110 Gb of their files are prepared for uploading. There are a lot of personal documents especially passports. Accounting, finance, tax, projects, clients information and much more could be found in the archives we are going to share. |
|||||
| Ransomware | ANI Networks id10567 View details | United States | Telecommunications | — | |
|
ANI Networks is a leader in the wholesale, carrier-class telecommunications industry. 30GB of data will be uploaded. There will bemany files with personal information (SSN, DOB and so on), nda, confidential agreements and other operational files. |
|||||
| Ransomware | Toronto Zoo id10565 View details | Canada | Communication / Marketing | — | |
|
The Toronto Zoo is a Canadian zoo and involved in saving wildlifeto ensure the rich diversity of nature for future generations. 133GB of data will be published soon. Lots of NDAs and confidential agreements are represented in the data. Some personal files (driver licenses and so on) can be found in the files. |
|||||
| Ransomware | Dirig Sheet Metal id10546 View details | United States | Manufacturing / Engineering | — | |
|
Dirig Sheet Metal provides comprehensive services for industrial customers, from customized evaluations and recommendations to thefull range of resources required to complete industrial projects. 65GB of data will be available for downloading. You can find detailed information of projects with drawings, contracts, confidential agreements, a bit of personal information, financial data and so on. |
|||||
| Ransomware | Cryopak id10531 View details | United States | Healthcare / Pharma | — | |
|
Cryopak, a subsidiary of Integreon Global (formerly known as TCP Reliable), is a cold chain solutions provider for the pharmaceutical, life sciences, biotech, and food industries. We are preparing a few archives with their data for uploading. You can expect itsoon. There will be a lot of passports, driver licenses, NDAs, confidential agreements etc. |
|||||
| Ransomware | Wilhoit Properties id10521 View details | United States | Communication / Marketing | — | |
|
Wilhoit Properties, Inc. founded in 1967 and headquartered in Springfield, Missouri, is a property management company. We will upload their files soon. There are not many HR files but a lot of incident reports where you can find complete personal information with SSN and other data. Besides that there are a lot of projects and financial data. |
|||||
| Ransomware | Milestone Environmental Contracting id10520 View details | Canada | Communication / Marketing | — | |
|
Milestone Environmental Contracting delivers innovative techniques and design, approach projects in an inclusive, cooperative and transparent way and apply methodical quality management processesto get the job done safely and successfully. Projects, clients, contracts etc. We'll give you the access soon. |
|||||