Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 5h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 72 | Onion service | Up checked 5h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 71 | Onion service | Up checked 5h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 5h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 5h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 65 | Onion service | Up checked 5h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 66 | Onion service | Up checked 5h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 64 | Onion service | Up checked 5h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 63 | Onion service | Up checked 5h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 60 | Onion service | Up checked 5h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 61 | Onion service | Up checked 5h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 5h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 5h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 58 | Onion service | Up checked 5h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 5h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 5h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 5h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 55 | Onion service | Up checked 5h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 51 | Onion service | Up checked 5h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 5h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 5h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 1 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 67 | Onion service | Down checked 5h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 62 | Onion service | Down checked 5h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 5h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 5h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 5h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 5h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 5h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 43 | Onion service | Down checked 5h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 42 | Onion service | Down checked 5h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 5h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 5h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 37 | Onion service | Down checked 5h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 38 | Onion service | Down checked 5h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 5h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 5h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 34 | Onion service | Down checked 5h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 5h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 35 | Onion service | Down checked 5h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 31 | Onion service | Down checked 5h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 5h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 29 | Onion service | Down checked 5h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 5h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 28 | Onion service | Down checked 5h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 27 | Onion service | Down checked 5h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 24 | Onion service | Down checked 5h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 26 | Onion service | Down checked 5h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 5h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 23 | Onion service | Down checked 5h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 5h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 5h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 19 | Onion service | Down checked 5h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 5h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 5h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 16 | Onion service | Down checked 5h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 17 | Onion service | Down checked 5h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 5h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 5h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 5h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 10 | Onion service | Down checked 5h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 5h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 5h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 7 | Onion service | Down checked 5h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 8 | Onion service | Down checked 5h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 5h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 5 | Onion service | Down checked 5h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 5h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 3 | Onion service | Down checked 5h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 4 | Onion service | Down checked 5h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 15101–15200 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Your Building Centers id32878 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector based in the United States, providing professional and commercial services to clients. It is documented within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's status in relation to cybersecurity incidents and threat actor activity. The description remains neutral, focusing on the verified association without speculating on unconfirmed details such as breach specifics or operational impact. The entry serves to catalog this relationship for threat analysts and cybersecurity professionals monitoring service-sector exposure. |
||||||
| Ransomware | Your Building Centers id32878 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is associated with the US. The entity appears in the threat-intelligence catalog as a ransomware victim linked to the threat actor interlock. This listing reflects observed cyber-threat intelligence data concerning the organization's exposure profile and the specific adversary attribution provided by the index. The description remains neutral regarding incident details, focusing solely on the entity's classification, sector, geographic context, and its association with interlock as a ransomware victim. |
||||||
| Ransomware | Your Building Centers id32878 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States. The entity provides business and professional services, though specific operational details remain limited within this catalog context. According to the threat-intelligence index, ybconline.com has been categorized as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in the index under this threat relationship without disclosing confirmed breach specifics. The designation serves to inform stakeholders of the cybersecurity context surrounding this organization within the indexed threat landscape. |
||||||
| Ransomware | Your Building Centers id32879 View details | United States | Services | — | ||
|
yBConnele.com operates within the Services sector and is based in the United States. The entity represents a business organization whose infrastructure or operations are documented within threat-intelligence frameworks. As classified in this premium catalog, yBConnele.com is listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity records tracking such incidents without disclosing unverified technical or operational details. The entry serves to contextualize the entity's role within broader ransomware threat analysis. |
||||||
| Ransomware | Your Building Centers id32884 View details | United States | Services | — | ||
|
ybconline.com is a company operating within the Services sector based in the United States. Its name and operational profile indicate it functions within a service-oriented business context, though specific internal details about its services are not publicly disclosed in this context. According to the threat-intelligence index catalog, ybconline.com has been formally listed as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's association within cybersecurity threat records. The listing type identifies the relationship between the entity and the identified threat actor without elaborating on confirmed incident specifics. |
||||||
| Ransomware | Your Building Centers id32897 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector based in the United States, providing business and commercial services to clients. As part of the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event correlations within the intelligence dataset without disclosing specific incident details. This entry serves to inform stakeholders about potential exposure patterns and reinforces vigilance across the Services sector in the US. All information presented remains factual and neutral per catalog standards. |
||||||
| Ransomware | Your Building Centers id32897 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States, providing business and professional services to clients. As part of our threat-intelligence catalog, this entity is documented as a ransomware victim linked to the threat actor interlock. The listing reflects cybersecurity intelligence concerning this organization's association with this specific ransomware campaign. Our analysis maintains factual neutrality regarding the nature of the incident while cataloging the entity's status within our intelligence framework. This entry supports security professionals monitoring threat actor activity across service-sector organizations. |
||||||
| Ransomware | Your Building Centers id32898 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States, providing professional or commercial services aligned with its domain identity. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's inclusion in threat-intelligence records documenting cybersecurity incidents and adversary activity. No specific breach details, stolen data categories, record counts, ransom amounts, or confirmed incident specifics are provided here, in accordance with strict factual neutrality. This description serves as authoritative catalog copy for the ransomware victim designation linked to interlock. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States, providing business and service-oriented offerings to clients and partners. The entity is documented within a threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects cybersecurity intelligence data regarding the association between ybconline.com and interlock, without confirming specific breach details, stolen data, ransom terms, or operational impact. The profile serves catalog and analyst purposes by contextualizing the entity within the ransomware threat landscape and its identified source attribution. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States. The entity provides professional and commercial services, though specific operational details remain limited in public records. According to the threat-intelligence index, ybconline.com is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity threat reporting without confirming specific incident details. The entry serves as part of a broader catalog documenting ransomware-related entities and their associated threat actors for monitoring and intelligence purposes. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is associated with the US. The entity is cataloged as a ransomware victim within the threat-intelligence index, linked to the threat actor interlock. This listing reflects the organization's status in relation to identified cyber threat activity and associated intelligence records. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope, ransom demands, or breach confirmation are not established facts in this context. ybconline.com serves as a reference point for monitoring threat actor interlock activity within the Services sector landscape. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com is a company operating within the Services sector based in the United States, providing professional and commercial services to clients. The entity has been cataloged within this threat-intelligence index under the designation ransomware victim, with interlock identified as the associated threat actor or source. This listing reflects the cybersecurity context in which the organization was impacted, contributing valuable intelligence for threat monitoring and defense strategies. The description remains factual and neutral, focusing on the entity's profile and its recognized association with the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com is a company operating within the Services sector based in the United States. Its name and domain indicate commercial service delivery focused on connectivity and operational support. The entity has been cataloged within this threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the cybersecurity community's assessment of its involvement in a ransomware incident attributed to interlock. The description remains factual and neutral, documenting the association without extrapolating unverified details regarding attack vectors, data handling, or recovery efforts. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is associated with the US region. The entity represents a business organization whose infrastructure was impacted by a cyber incident categorized as ransomware within threat-intelligence indexing frameworks. This listing type identifies the organization as a ransomware victim connected to the threat actor interlock, reflecting observed security event correlations in public threat datasets. The description maintains neutrality regarding specific technical details, incident scope, or resolution outcomes, adhering to verified intelligence sources only. Understanding such listings supports cybersecurity awareness and contextual threat analysis for sector-focused defense strategies. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com is a company operating within the Services sector based in the United States, providing professional and commercial services to clients and partners. The entity is cataloged in the threat-intelligence index under the designation of ransomware victim, associated with the threat actor interlock. This listing reflects the cybersecurity assessment and intelligence analysis conducted regarding the entity's exposure profile and the identified threat actor connection. The description remains neutral, focusing solely on the verified classification within the index without elaborating on unconfirmed incident details. ybconline.com serves as a documented case illustrating the operational landscape of service-sector organizations targeted by advanced threat actors. |
||||||
| Ransomware | Your Building Centers id32900 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States. The entity provides business and service-oriented offerings relevant to its sector classification. According to the threat-intelligence index, ybconline.com was listed as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor within the indexed ransomware victim records. The description maintains factual neutrality regarding the incident without inventing technical details or disclosure specifics. |
||||||
| Ransomware | Your Building Centers id32941 View details | United States | Services | — | ||
|
Ybconline.com operates within the Services sector and is based in the United States. The entity provides business and service-oriented offerings relevant to its industry classification. It has been cataloged in this threat-intelligence index under the designation of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and associated adversary activity. The entry provides neutral context for threat analysts tracking ransomware-related exposure across sectors and geographic regions. |
||||||
| Ransomware | Your Building Centers id33108 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States. The entity provides professional and commercial services, though specific operational details remain limited in public threat intelligence records. It has been cataloged as a ransomware victim linked to the threat actor interlock within this threat-intelligence index. This listing reflects the association between the entity and the identified cyber threat actor without disclosing confirmed breach details, data exfiltration specifics, or financial impact. The entry serves to document the relationship for security researchers, defenders, and organizations monitoring active threat actor activity in the Services sector. |
||||||
| Ransomware | Your Building Centers id33109 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States. The entity provides business and professional services, though specific operational details remain limited in public threat-intelligence records. It has been formally cataloged as a ransomware victim linked to the threat actor interlock within this intelligence index. This listing reflects the entity's association with this threat actor's campaign without disclosing confirmed breach specifics, such as data stolen, ransom demands, or internal incident details. The entry serves as a structured reference for cybersecurity professionals monitoring ransomware activity across the Services sector in the US. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States, providing business and professional services to clients. The entity is cataloged in this threat-intelligence index as a ransomware victim, with an associated threat actor identified as interlock. This listing reflects the cybersecurity assessment linking the organization to this specific threat actor profile within the index. The description remains factual and neutral, focusing on the entity's classification and its documented relationship to interlock without speculating on breach details. This entry supports threat-intelligence research and monitoring efforts for security professionals. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is based in the United States, providing business and professional services to clients. The entity is cataloged in this threat-intelligence index as a ransomware victim, with its listing type explicitly linked to the threat actor interlock. This designation reflects the cybersecurity context in which the organization was identified within the index. The description remains neutral and factual, focusing on the entity's sector, geographic location, and association with the specified threat actor without disclosing unverified incident details. Such catalog entries support threat analysts and defenders in tracking ransomware-related entities and their contextual profiles. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector based in the United States, providing business and professional services to clients. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects observed security events where interlock demonstrated targeting activity against this organization's digital infrastructure. The description maintains neutrality regarding specific incident details, avoiding speculation on data handling, breach confirmation, or operational impact. Such entries support defenders in understanding adversary targeting patterns and sector-specific vulnerability landscapes. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is associated with the US. The entity functions as a commercial organization offering services aligned with its sector classification. According to the threat-intelligence index, ybconline.com is cataloged as a ransomware victim tied to the threat actor interlock. This listing type indicates the entity was impacted by ransomware activity associated with interlock's operations. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly attributed to this entity in available intelligence sources. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com is a United States-based company operating within the Services sector, providing professional and commercial services to clients. The entity has been cataloged within a threat-intelligence index under the designation ransomware victim, specifically associated with the threat actor interlock. This listing reflects the cybersecurity intelligence assessment linking the organization to this particular threat actor profile. The description remains neutral and factual, focusing on the entity's sector, geographic location, and its inclusion in the ransomware victim index tied to interlock without elaborating on unverified incident details. |
||||||
| Ransomware | Your Building Centers id33110 View details | United States | Services | — | ||
|
ybconline.com is a United States-based company operating within the Services sector, providing professional and commercial services to clients. The entity has been cataloged within a threat-intelligence index under the designation ransomware victim, specifically associated with the threat actor interlock. This listing reflects the cybersecurity intelligence assessment linking the organization to this particular threat actor profile. The description remains neutral and factual, focusing on the entity's sector, geographic location, and its inclusion in the ransomware victim index tied to interlock without elaborating on unverified incident details. |
||||||
| Ransomware | Your Building Centers id32907 View details | United States | Services | — | ||
|
ybconline.com operates within the Services sector and is associated with the US location. The entity represents a business organization whose infrastructure was impacted by a ransomware incident, as documented in threat-intelligence indexing. This listing type identifies ybconline.com specifically as a ransomware victim connected to the interlock threat actor profile. The entry reflects observed security event intelligence without disclosing unconfirmed technical details or specific breach outcomes. Understanding this association aids defenders in assessing risk patterns within the Services sector. |
||||||
| Ransomware | Your Building Centers id32907 View details | United States | Services | — | ||
|
Your Building Centers (YBC) is a Pennsylvania-based company with 14 locations throughout Central Pennsylvania. For generations, they have been supplying contractors, builders, remodelers and amateur enthusiasts with name brand building materials. With roots dating back to the early 1900s, YBC and its predecessor companies have created a legacy deeply connected to the communities they serve. Their commitment goes beyond selling materials - they have become the backbone of local neighborhoods, growing with the people and businesses they support. Moving forward, they remain focused on maintaining that connection in the 21st century. |
||||||
| Ransomware | Wilsonville Toyota-Scion id20830 View details | United States | Retail / E-commerce | leaked | ||
|
Wilsonville Toyota-Scion is a new and used car dealership company. It provides a variety of vehicles, including coupes, convertibles, hatchbacks, sedans, and passenger vans. The company was formed in 2007 and is based in Wilsonville, Oregon |
||||||
| Ransomware | Wilsonville Toyota-Scion id32577 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and supporting commerce activities typical of online retail environments. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing contributes contextual intelligence regarding cyber incidents affecting retail and e-commerce organizations, supporting analysts in identifying patterns, actor behavior, and sector-specific exposure. The description avoids speculative claims regarding breach details, data impacts, or operational outcomes, focusing solely on the verified classification and associated threat context. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32577 View details | United States | Retail / E-commerce | — | ||
|
Wilsonville Toyota-Scion is a new and used car dealership company. It provides a variety of vehicles, including coupes, convertibles, hatchbacks, sedans, and passenger vans. The company was formed in 2007 and is based in Wilsonville, Oregon |
||||||
| Ransomware | Wilsonville Toyota-Scion id32683 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity targeting this sector and entity without disclosing confirmed breach details, data exfiltration specifics, or operational impact. This entry serves to document the relationship between the entity, its sector context, and the identified threat actor for analytical and defensive reference. The neutral classification supports threat-researchers and security professionals monitoring retail and e-commerce environments for evolving ransomware campaigns. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32684 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and consumer-facing services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the organization's role in a cyber incident context under interlock's activity profile. No specific incident details such as data stolen, ransom demands, or confirmed breach metrics are included here, adhering to strict factual boundaries. This description serves as neutral reference material for threat-intelligence professionals assessing retail sector exposure to interlock-linked ransomware activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32684 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commercial activities in this domain. The entity is cataloged in this threat-intelligence index under the classification of ransomware victim, with its associated threat actor identified as interlock. This listing type indicates that the domain or organization was impacted by ransomware activity attributable to interlock, providing context for security analysts tracking retail and e-commerce threats. No specific technical details, data exfiltration metrics, ransom terms, or confirmed breach specifics are included here to maintain factual neutrality. The entry serves as a reference point within the broader threat-intelligence landscape for monitoring actor behavior and sector exposure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32685 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The domain represents a business entity whose infrastructure was impacted by a ransomware incident. This listing type identifies the entity as a confirmed ransomware victim linked to the threat actor interlock in the threat-intelligence index. The description focuses on the entity's sector, geographic origin, and its classification within the intelligence catalog without disclosing unverified incident details. It serves as a reference point for security teams monitoring retail and e-commerce environments for associated threats. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32689 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to retail and e-commerce environments. The entry provides neutral context regarding the entity's operational profile and its documented relationship to the identified threat actor without disclosing unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32689 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sector, providing online commerce services and digital storefront functionalities. The entity is cataloged within this threat-intelligence index under the designation of ransomware victim. Its inclusion reflects documented intelligence linking the organization to the interlock threat actor group. This listing type contextualizes the entity's exposure within cybersecurity threat landscapes, emphasizing sector-specific risks for retail and e-commerce environments. The description remains factual and neutral, focusing solely on the verified association without extrapolating breach details or unconfirmed claims. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32697 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commercial activities in this digital marketplace. As cataloged in the threat-intelligence index, it is classified as a ransomware victim associated with the threat actor interlock. This listing type indicates the entity was impacted by ransomware activity, contributing to broader awareness of attack patterns targeting retail and e-commerce organizations. The description focuses on the entity's sector, geographic context, and its verified association with interlock within the ransomware victim index, without speculating on unconfirmed technical or operational details. This entry supports cybersecurity professionals in monitoring threat actor behavior and sector-specific risk exposure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32699 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with threat actor interlock. This listing reflects the cybersecurity context in which the organization was impacted, highlighting vulnerabilities within retail and e-commerce infrastructure targeted by coordinated cyber threats. The description remains neutral, focusing solely on the verified association and sector profile without disclosing unconfirmed incident details, data specifics, or recovery outcomes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32699 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services to customers. This entity is cataloged in the threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. The listing reflects observed cybersecurity event data tied to this organization's infrastructure, highlighting exposure within high-traffic digital commerce environments. Details remain confined to verified intelligence indicators regarding the association with interlock and the ransomware incident classification. This entry serves to inform security professionals and stakeholders monitoring retail sector threats and active threat actor campaigns. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32700 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and related business functions. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with threat actor interlock. This listing type identifies the organization as having experienced a ransomware incident tied to interlock's activity. The description adheres to neutral, encyclopedic standards without inventing specifics regarding data exposure, ransom demands, or operational impact. The entry serves to inform analysts and defenders about this compromised entity and its confirmed association with interlock in the intelligence dataset. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. The listing reflects observed cyber-threat intelligence data concerning this organization without disclosing unverified incident details. This entry supports security professionals, compliance teams, and defenders in monitoring ransomware-related activity across retail and e-commerce environments. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers through commerce-related digital services. As a ransomware victim in the threat-intelligence index, it is associated with the threat actor interlock, reflecting the entity's inclusion in cybersecurity threat reporting for its operational profile and geographic context. The listing type identifies the relationship between this organization and the specified threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This description maintains neutrality while providing catalog-ready context for researchers, defenders, and analysts monitoring retail and e-commerce environments for ransomware-related activity. The entity's classification supports structured threat indexing across sectors and geographies. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commerce activities typical of online retail environments. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification contributes contextual intelligence regarding cyber incidents affecting retail and e-commerce organizations, supporting defensive and investigative workflows. The description remains factual and neutral, focusing on the entity's sector, geographic context, listing classification, and verified association without asserting unconfirmed breach details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in threat-intelligence records. The entity represents a business context where cybersecurity incidents may occur, with sector relevance informing risk assessment and intelligence monitoring. This listing type identifies the organization as a ransomware victim connected to interlock's activity. The description maintains neutrality regarding specific incident details, avoiding assumptions about data access, operational impact, or confirmed breach parameters. It serves as catalog documentation for threat-intelligence indexing purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity represents a business organization whose security posture was impacted by a ransomware incident, documented within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing type identifies the relationship between the entity and the associated cyber threat actor, providing context for threat-researchers and security professionals monitoring retail and e-commerce environments. No specific technical details regarding the attack vector, data accessed, or recovery actions are included in this description to maintain factual neutrality and avoid speculation beyond the indexed association. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32703 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under this domain identity. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The description focuses on the entity's sector, geographic context, and its classification within the index without asserting unverified incident details such as data stolen, record counts, ransom demands, or confirmed breach specifics. This entry supports cyber-threat-intelligence analysis by documenting the relationship between the entity, its operational sector, and the identified threat actor for monitoring and risk assessment purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32704 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operations associated with the United States. The entity is cataloged as a ransomware victim in the threat-intelligence index, with its association to the threat actor interlock documented for cyber-risk context. This listing reflects the entity's inclusion in intelligence records tied to ransomware activity affecting retail and online commerce environments. The description remains neutral, focusing on the verified association and sector context without speculating on breach details, data exposure, or operational impact. wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32704 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, with its domain identity used to catalog the entity within a threat-intelligence index. The listing type identifies it as a ransomware victim associated with the threat actor interlock. This classification supports security teams, compliance analysts, and cyber-threat-intelligence consumers in tracking ransomware exposure patterns across retail and commerce environments. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are provided here, in accordance with strict factual neutrality. The entry neutrally records that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32707 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the entity's relationship to a cyber incident within the interlock campaign, highlighting its exposure within a retail technology environment. This description maintains factual neutrality regarding the nature of the threat without speculating on unverified details such as data scope or operational impact. The entry serves to inform security analysts and defenders monitoring retail sector vulnerabilities linked to interlock activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32707 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with its primary location identified as the United States. The entity represents a business organization whose security posture and operational infrastructure are relevant within cyber threat intelligence contexts. It is cataloged specifically as a ransomware victim, linked to the threat actor interlock, reflecting observed or reported adversarial targeting patterns in the sector. This listing serves to inform security professionals, compliance teams, and threat-index consumers about associated risk indicators without disclosing unverified incident details. The entry underscores the importance of vigilance for retail and e-commerce organizations against evolving ransomware campaigns. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32708 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index as a ransomware victim. The entity reflects cybersecurity exposure within a commerce-focused environment where retail and online e-commerce systems present specific operational and data-security considerations. This listing type documents the relationship between the entity and the identified threat actor without disclosing unverified incident details, such as stolen data, ransom terms, or confirmed breach specifics. The catalog entry serves to contextualize the entity within broader cyber-threat intelligence reporting for monitoring retail and e-commerce sector risks. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32708 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services to customers and partners. The entity has been cataloged within the threat-intelligence index under the classification of ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the cybersecurity community's documented relationship between this organization and the interlock threat actor, contributing to broader awareness of retail-focused ransomware activity. The entry serves as a reference point for analysts tracking threat actor behavior across digital commerce environments. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32709 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is identified in the threat-intelligence catalog as a ransomware victim linked to the interlock threat actor. The entity reflects a business context where retail and online commerce systems may be targeted by cyber threats, with this listing documenting its association with interlock as part of monitored incident intelligence. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics, are provided here to maintain factual neutrality and avoid unsupported claims. This entry serves to catalog the entity's verified association within the ransomware victim index under the interlock attribution for analytical and defensive reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32709 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain identity. As documented in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. The entry serves to catalog the organization's exposure profile within cybersecurity threat databases, reflecting its sector context and geographic location without disclosing unverified incident details. This neutral record supports threat-researchers and defenders in tracking ransomware-related entities and associated actors across monitored indices. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32714 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged in this threat-intelligence index as a ransomware victim, with its association explicitly tied to the threat actor interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to malicious activity targeting retail and e-commerce infrastructure. No specific incident details, such as stolen data categories, record counts, ransom demands, or confirmed breach evidence, are included per strict factual reporting guidelines. The designation serves to inform stakeholders about the entity's status within the indexed ransomware incident landscape and its connection to interlock's activity profile. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32714 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and related marketplace services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's exposure within the cybersecurity landscape and its connection to coordinated malicious activity targeting retail and digital commerce infrastructure. This description avoids inventing specific incident details, including data compromised, operational impact, ransom terms, or confirmed breach evidence. It neutrally documents the entity's categorization for threat-intelligence reference and indexing purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32716 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, with its domain identity associated with a ransomware victim listing in the threat-intelligence index. The entity reflects cybersecurity exposure within commerce environments where customer data, transaction records, and operational continuity may be relevant to threat analysis. This entry documents the relationship between wilsonvilletoyota.com and the interlock threat actor without asserting unverified breach details, data exfiltration specifics, ransom terms, or confirmed incident outcomes. For catalog and intelligence purposes, the listing type identifies the entity as a ransomware victim connected to interlock, supporting neutral monitoring and risk-aware research across retail and e-commerce contexts. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32716 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index under the ransomware victim classification. The entity reflects a commercial organization in the United States whose operational environment was targeted by ransomware activity attributed to interlock. Catalog entries for such organizations provide context for threat actors, sector exposure, geographic risk, and incident correlation within cybersecurity intelligence frameworks. This listing neutrally documents the relationship between wilsonvilletoyota.com and interlock as a ransomware victim without asserting unverified breach details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32717 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services under its domain identity. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization has been identified within threat-intelligence datasets related to ransomware activity involving interlock. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual constraints. The entry serves to document the entity's sector, geographic context, and its association with interlock for cyber-threat monitoring and intelligence purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32717 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and customer-facing services aligned with modern retail digital infrastructure. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its role within incident records tied to this actor's activity without disclosing confirmed technical findings, data scope, or financial impact. This description maintains neutrality while contextualizing the entity's sector, geographic presence, and security classification for analytical and cataloging purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32718 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type indicates that malicious activity targeting this organization aligns with interlock's operational profile, underscoring vulnerabilities within retail digital infrastructure. This entry serves as a reference point for threat analysts monitoring ransomware campaigns in e-commerce environments. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32722 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing online functionalities. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, explicitly associated with the threat actor interlock. The entry documents the entity's exposure within a cyber incident framework without disclosing unverified details such as data stolen, system impact, or ransom terms. This classification supports threat analysts and security teams in tracking retail and e-commerce environments affected by interlock-linked ransomware activity. The record serves as a neutral reference point for understanding the entity's status within the indexed ransomware victim landscape. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32722 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing type captures the cybersecurity event classification for monitoring and risk intelligence purposes. The description adheres to neutral, encyclopedic standards without inventing incident details such as data stolen, ransom demands, or confirmed breach specifics. It serves to contextualize the entity's status within the broader cyber threat landscape for Retail and E-commerce sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32722 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail-related services. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association specifically tied to threat actor interlock. This listing type indicates that the organization was impacted by ransomware activity, contributing contextual data for cybersecurity professionals monitoring retail and e-commerce environments against evolving cyber threats. The description remains neutral and factual, focusing solely on the entity's classification, sector, geographic location, and verified threat-actor linkage without speculating on incident details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under this domain name. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index. Its association with the threat actor interlock identifies the cybersecurity context of its inclusion in this listing. No specific incident details such as data stolen, breach confirmation, or ransom terms are provided to maintain factual neutrality and avoid speculation regarding the event. This description serves to document the entity's classification for analytical and monitoring purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and related commercial services. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing type indicates that the organization was impacted by ransomware activity connected to interlock, contributing contextual data for cybersecurity monitoring and incident analysis. The description remains factual and neutral, focusing on the entity's sector, geographic location, and its classification within the index without speculating on unverified incident details. Such entries support researchers and defenders in tracking ransomware victim profiles across sectors and threat actor networks. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain identity. The entity is cataloged specifically as a ransomware victim within the threat-intelligence index, with the associated threat actor and source identified as interlock. This listing type denotes the nature of the cybersecurity event attributed to the organization without disclosing unverified technical or operational details. The description remains neutral and factual, focusing on the entity's sector, geographic context, and its classification within the intelligence dataset. No incident specifics such as data stolen, ransom demands, or confirmed breach metrics are included per strict analytical guidelines. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the retail and e-commerce sector and is associated with the United States. The domain represents an entity cataloged in a threat-intelligence index under the listing type ransomware victim. Its association with interlock identifies a specific threat actor connected to this entry within the intelligence dataset. This description provides neutral, factual context regarding the entity's sector, geographic location, listing classification, and threat-actor linkage without asserting unverified incident details. The record reflects the indexed association and is intended for analytical and cataloging purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is identified in the threat-intelligence index as a ransomware victim. Its geographic context places the entity within the United States. The listing type indicates that the domain or associated organization was flagged in relation to a ransomware-associated activity, with interlock cited as the associated threat actor or source. No specific incident details, such as stolen data categories, record counts, ransom demands, or confirmed breach evidence, are provided or invented in this description. This entry serves as a neutral catalog record for cataloguers tracking cyber threats and ransomware-related entities. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index as a ransomware victim. The entity reflects cybersecurity incidents affecting commercial digital platforms in the United States, where retail and e-commerce organizations face heightened exposure to ransomware campaigns targeting operational continuity and customer data. This listing documents the entity's classification within the intelligence catalog without disclosing unverified incident details, such as data stolen, ransom demands, or confirmed breach specifics. Its inclusion underscores ongoing monitoring of ransomware activity across relevant sectors and threat actor networks. The entry was formally listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity serves as a catalog entry identifying a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects cybersecurity intelligence compiled to document exposure patterns and adversary connections relevant to retail and e-commerce environments. No specific incident details such as stolen data, ransom terms, or confirmed breach metrics are included, maintaining factual neutrality. The designation underscores the importance of monitoring ransomware activity across digital commerce sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The domain represents an entity cataloged in a threat-intelligence index under the classification of ransomware victim, specifically associated with the threat actor interlock. This listing type indicates that the entity was identified within incident datasets related to malicious cyber activity targeting retail and e-commerce environments. The description focuses on the entity's classification and contextual threat association without asserting unverified details regarding breach specifics, data exposure, or operational impact. Understanding such listings supports cybersecurity professionals in assessing sector-wide vulnerability patterns and tracking adversary methodologies relevant to retail digital infrastructure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and associated business functions. The entity is cataloged as a ransomware victim in the threat-intelligence index, with its primary associated threat actor identified as interlock. This listing type indicates a cybersecurity incident classification tied to the interlock group's activity within this sector. The description adheres to neutral, factual reporting standards without speculating on unverified incident details such as data exfiltration scope, ransom demands, or internal response specifics. The inclusion reflects verified intelligence linking the domain and organization to the interlock threat actor profile. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32724 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sector, providing digital commerce services under this domain name. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This listing type indicates a cybersecurity incident context where the organization may have been targeted by ransomware activity connected to interlock's operations. The description focuses on the entity's verified sector, geographic origin, and its association with the specified threat actor without disclosing unconfirmed incident details. Neutral documentation supports threat-index integrity and analytical reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32725 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce services aligned with modern online retail infrastructure. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the entity's relationship to a cyber incident involving ransomware activity, contextualized by its business sector and geographic location. This entry serves threat analysts and security professionals seeking structured intelligence on affected organizations, their sector exposure, and associated threat actor profiles. No specific incident details, such as data stolen or ransom demands, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32725 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is located in the United States. The entity functions as a commerce-oriented organization serving retail and online sales activities, with its digital infrastructure potentially exposed to cyber threats targeting business operations and customer data. According to the threat-intelligence index, this listing identifies wilsonvilletoyota.com as a ransomware victim associated with the threat actor interlock. The entry provides categorical context regarding the entity's sector, geographic location, and relationship to the specified threat actor without disclosing unverified incident details such as breach confirmation, data scope, or financial impact. This description serves to catalog the entity within the ransomware victim index for analytical and defensive reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32726 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security intelligence concerning this organization's exposure to ransomware activity within its sector. No specific incident details, such as data stolen or ransom demands, are provided here to maintain factual neutrality. This entry serves to inform defenders and analysts about correlated threat activity affecting retail and e-commerce entities in the United States. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32727 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce and customer-facing services. The domain is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing type indicates a cybersecurity incident context tied to the entity's infrastructure, without disclosing specific technical findings, data compromises, or operational impacts. The entry serves to document the relationship between this organization, its geographic and sectoral context, and the threat actor interlock for analytical and defensive reference. Neutral reporting ensures factual alignment with verified intelligence sources while avoiding speculation about breach details or recovery status. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32728 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a commercial entity referenced in threat-intelligence indexing. As a ransomware victim associated with the threat actor interlock, the entity serves as a documented case within cybersecurity intelligence catalogs. The listing type identifies this organization as having experienced ransomware activity linked to interlock, providing context for defenders monitoring retail and e-commerce environments. This description maintains factual neutrality regarding the entity's role, sector, geographic location, and association without asserting unverified breach details, data impacts, or recovery specifics. The inclusion reflects its status within the threat-intelligence index as a ransomware victim tied to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32729 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity intelligence assessment linking the domain to a ransomware incident within the retail and e-commerce context. The entry documents the relationship between the entity, its operational sector, and the identified threat actor without disclosing unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32729 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain name. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor identified as interlock. This classification reflects the security community's documented linkage between the domain and the interlock threat actor's activity within retail digital environments. No specific incident details, such as data stolen, ransom demands, or breach confirmation metrics, are included per strict factual guidelines. The entry serves to inform defenders and researchers about this entity's status within the ransomware threat landscape associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32731 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity represents a business organization whose security posture was assessed as part of threat-intelligence monitoring. It is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing type indicates that the entity was identified in relation to a ransomware campaign or related malicious activity attributed to interlock. The description focuses on the entity's classification within the intelligence index without disclosing unverified incident details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32732 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing online offerings. The entity has been cataloged in this threat-intelligence index under the classification of ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to ransomware activity without disclosing unverified incident details such as data stolen, ransom demands, or confirmed breach specifics. The entry serves to document the relationship between this retail e-commerce entity, the interlock threat actor group, and the ransomware threat landscape for monitoring and defense purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32733 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with primary activity associated with the United States. The entity serves as a catalog entry identifying a ransomware victim within the threat-intelligence index, where its association with the threat actor interlock has been documented. This listing type indicates the entity was flagged in relation to malicious cyber activity targeting retail and online commerce environments. The description maintains neutrality regarding unverified incident details, focusing solely on the entity's classification, sector context, geographic location, and confirmed linkage to interlock as a ransomware victim. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain identity. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the observed relationship between this organization and the identified malicious actor without disclosing unverified incident details. This record supports security teams in monitoring ransomware exposure patterns across retail and e-commerce environments. Neutral documentation ensures alignment with responsible threat-intelligence reporting standards and avoids speculative claims about data loss, operational impact, or confirmed breach specifics. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity functions as a commercial online presence relevant to retail transactions and e-commerce services. In the context of this threat-intelligence index, it is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects observed cyber-security intelligence concerning the entity's exposure profile and attacker linkage. The description remains factual and neutral, focusing on sector, geographic location, listing classification, and the attributed threat actor without asserting unverified incident details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This designation contributes to the broader analysis of cyber incidents affecting retail and e-commerce environments, supporting defenders in understanding attack patterns and associated actors. The record reflects the entity's classification within the index without elaborating on unverified technical details or confirmed breach specifics. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim. Its inclusion reflects an assessed relationship with the threat actor interlock, which has been documented in cyber threat intelligence databases. The description focuses on the entity's identity, operational sector, geographic context, and the neutral classification of its association with interlock. No specific incident details, such as data stolen, ransom demands, or confirmed breach evidence, are included per strict factual boundaries. This entry provides a structured overview for threat researchers and security analysts monitoring retail and e-commerce environments for ransomware-related activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce and customer-facing services. As cataloged in this threat-intelligence index, it is classified as a ransomware victim associated with the threat actor interlock. The entity's inclusion reflects observed cyber-threat intelligence correlating its infrastructure or operational profile with interlock's activity. This listing serves as a neutral record for security professionals monitoring retail and e-commerce environments for ransomware-related incidents. No specific breach details, data compromises, or financial impacts are asserted here, maintaining factual and encyclopedic neutrality. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim, with its association to the threat actor interlock documented for analytical reference. The listing type identifies the entity's role in threat-related incidents without disclosing unverified technical details, data specifics, or confirmed breach outcomes. This description adheres to neutral, authoritative standards for cataloging cybersecurity events across sectors and geographies. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32736 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the organization's exposure to ransomware activity without disclosing unverified technical details, breach specifics, or confirmed incident outcomes. This description adheres to neutral, authoritative standards for documenting compromised entities in cybersecurity intelligence catalogs. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32737 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The domain represents an entity cataloged in a threat-intelligence index under the designation of ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident classification relevant to retail and online commerce environments. This entry provides neutral context regarding the entity's operational sector, geographic location, and verified threat-related listing status without disclosing unconfirmed incident details. The classification serves analytical purposes for monitoring and understanding cyber threats within targeted sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32737 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, presenting a commerce-oriented digital presence relevant to threat-intelligence cataloging. The entity is cataloged as a ransomware victim in the provided threat-intelligence index, with the associated threat actor or source identified as interlock. This listing reflects the entity's classification within cybersecurity monitoring frameworks rather than confirming specific incident details such as data accessed, systems affected, or recovery actions. For security professionals, the record serves as a contextual marker connecting a retail or e-commerce organization to a ransomware-related intelligence entry tied to interlock. The description remains neutral and avoids speculative claims beyond the indexed classification. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32738 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. The description reflects the entity's sector profile and its verified association with this threat actor without disclosing unconfirmed incident details. This entry serves as a reference point for threat analysts monitoring retail and e-commerce environments for ransomware activity linked to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32740 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sector, serving customers and managing commercial activities online. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity threat datasets focused on identifying compromised organizations and their attacker connections. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are provided here to maintain factual neutrality. The entry serves threat-intelligence professionals seeking structured context on affected entities and associated malicious activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32740 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity is cataloged as a ransomware victim associated with the threat actor interlock within this threat-intelligence index. Catalog entries of this nature document organizational exposure profiles, sector context, geographic location, and attacker attribution for analytical and defensive reference. This listing supports cybersecurity professionals in mapping retail and e-commerce infrastructure risks tied to identified ransomware campaigns. The description remains factual and neutral, noting the association with interlock without asserting unverified incident details such as data exfiltration scope, ransom demands, or confirmed breach specifics. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32740 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services to customers and supporting business operations in this domain. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This classification reflects the cybersecurity context in which the organization was identified, highlighting potential security impacts relevant to retail and e-commerce infrastructure. No specific incident details such as data stolen, affected systems, or ransom demands are included, as confirmed specifics remain outside verified public disclosures. The entry serves to document the relationship between this entity and the interlock threat actor for security monitoring and intelligence purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32740 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail-related services. As a ransomware victim, this entity is cataloged in the threat-intelligence index with an association to the threat actor interlock. The listing type identifies the entity's role in a cyber incident context, reflecting the threat actor's activity and the sector exposure. This description maintains neutrality regarding unconfirmed incident details, focusing solely on the entity's classification, sector, geographic presence, and verified threat association. The entry serves to inform security analysts and defenders about this specific entity's documented relationship to interlock within the ransomware victim index. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32741 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving as an entity cataloged under the ransomware victim listing type within the threat-intelligence index. The domain reflects commercial activity aligned with online retail and commerce operations, providing context for its classification and sector relevance. This listing type identifies the entity as a victim of ransomware activity, with the associated threat actor and source designated as interlock. The description remains neutral and factual, focusing on the entity's sector, geographic location, listing classification, and linkage to the specified threat actor without asserting unverified incident details. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32741 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cybersecurity incidents affecting commercial organizations in this sector. The description remains factual and neutral, focusing on the entity's operational context and its verified association with the specified threat actor without disclosing unconfirmed incident details. This entry supports threat analysts in tracking ransomware exposure across retail and e-commerce environments. |
||||||