Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24839 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 24839 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 5h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 72 | Onion service | Up checked 5h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 71 | Onion service | Up checked 5h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 5h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 5h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 65 | Onion service | Up checked 5h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 66 | Onion service | Up checked 5h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 64 | Onion service | Up checked 5h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 63 | Onion service | Up checked 5h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 60 | Onion service | Up checked 5h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 61 | Onion service | Up checked 5h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 5h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 5h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 58 | Onion service | Up checked 5h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 57 | Onion service | Up checked 5h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 5h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 53 | Onion service | Up checked 5h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 55 | Onion service | Up checked 5h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 51 | Onion service | Up checked 5h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 5h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 5h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 1 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 67 | Onion service | Down checked 5h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 62 | Onion service | Down checked 5h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 48 | Onion service | Down checked 5h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 5h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 5h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 44 | Onion service | Down checked 5h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 5h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 43 | Onion service | Down checked 5h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 42 | Onion service | Down checked 5h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 5h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 5h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 37 | Onion service | Down checked 5h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 38 | Onion service | Down checked 5h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 5h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 5h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 34 | Onion service | Down checked 5h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 5h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 35 | Onion service | Down checked 5h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 31 | Onion service | Down checked 5h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 32 | Onion service | Down checked 5h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 29 | Onion service | Down checked 5h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 5h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 28 | Onion service | Down checked 5h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 27 | Onion service | Down checked 5h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 24 | Onion service | Down checked 5h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 26 | Onion service | Down checked 5h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 5h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 23 | Onion service | Down checked 5h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 5h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 5h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 19 | Onion service | Down checked 5h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 5h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 18 | Onion service | Down checked 5h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 16 | Onion service | Down checked 5h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 17 | Onion service | Down checked 5h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 5h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 5h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 5h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 10 | Onion service | Down checked 5h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 5h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 5h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 7 | Onion service | Down checked 5h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 8 | Onion service | Down checked 5h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 5h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 5 | Onion service | Down checked 5h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 5h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 3 | Onion service | Down checked 5h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
| Leak location 4 | Onion service | Down checked 5h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
Top Activity Sectors (15)
- Education 48
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Finance / Legal / Insurance 17
- Public Sector 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24839)
Search, filter and paginate the victim timeline for Interlock. Showing 15201–15300 of 24839.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Wilsonville Toyota-Scion id32741 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sectors, providing online commerce and retail services under its domain identity. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type indicates a cybersecurity incident context where the entity was impacted by ransomware activity linked to interlock, without disclosing unverified technical or operational details. This description maintains neutrality regarding the nature, scope, or resolution of the incident, adhering to factual reporting standards for threat-intelligence catalog entries. The entity serves as a reference point for understanding ransomware exposure patterns within retail and e-commerce environments targeted by interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32741 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The description focuses on the entity's sector, geographic context, and its classification within the ransomware victim index rather than disclosing unverified incident details. This entry supports threat-intelligence analysis by linking the organization to the interlock actor profile and providing sector-specific context for security teams monitoring retail and e-commerce environments. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32745 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity functions as a commercial online business, serving retail and e-commerce activities typical of this sector. Within the threat-intelligence context, it is cataloged as a ransomware victim, specifically associated with the threat actor interlock. This listing reflects the entity's documented relationship to this cyber threat actor within the intelligence index. The description remains neutral and factual, focusing on the entity's classification and sector without inferring specific incident details. Such catalog entries support security teams in monitoring ransomware exposure patterns across retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32748 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and related commercial offerings. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with its associated threat actor and source identified as interlock. The entry documents the relationship between the organization and the identified threat actor without disclosing unverified incident details, such as stolen data categories, record counts, ransom figures, or confirmed breach specifics. This classification supports threat analysts tracking retail and e-commerce security postures and attacker targeting patterns across the affected sector. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32750 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services under its domain identity. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock, indicating a cybersecurity incident classification relevant to retail digital infrastructure. The description reflects the entity's operational context and the verified association with the specified threat actor without disclosing unconfirmed technical or operational details of any potential incident. This entry supports threat-researchers and defenders in understanding sector-specific ransomware exposure patterns within US-based e-commerce environments. The listing type and actor attribution are presented neutrally based on index records. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32754 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence tied to the United States. The entity serves as a catalog entry documenting its status as a ransomware victim linked to the threat actor interlock. This listing type identifies compromised infrastructure or organizational exposure within cyber threat intelligence frameworks. Details regarding specific attack vectors, data impacts, or remediation steps are intentionally not included to maintain factual neutrality and avoid speculation beyond verified intelligence sources. The record supports security teams monitoring retail and e-commerce environments for emerging threat patterns. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32756 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The domain represents an entity cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock indicates a cybersecurity incident of concern within the retail digital commerce landscape. This entry provides a neutral reference point for analysts tracking ransomware activity and related threat actor engagements in commercial sectors. No specific incident details, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32761 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and associated digital offerings. As a ransomware victim entity indexed in this threat-intelligence catalog, it represents an incident case associated with the threat actor interlock. The listing type identifies the entity's role within the ransomware context under interlock's activity profile. This description maintains factual neutrality regarding the incident specifics while documenting the entity's sector, geographic location, and association with the specified threat actor for analytical purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32762 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity functions as a commercial service provider serving customers in digital commerce and retail contexts. Within the threat-intelligence index, it is cataloged specifically as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the entity's inclusion in cyber threat datasets for monitoring and defense purposes. No specific incident details, data breach confirmations, or operational impacts are asserted beyond the classification provided. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32763 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services under this domain name. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing type indicates exposure to cyber incidents characteristic of ransomware campaigns targeting commercial digital infrastructure. The description avoids speculative claims regarding data stolen, financial impact, or technical compromise details, focusing solely on verified indexing attributes. Neutral documentation supports analysts tracking retail sector vulnerabilities and interlock-linked threat activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32764 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are provided to maintain factual neutrality and avoid speculation. This listing serves to document the relationship between the organization, its sector, location, and the identified threat actor for analytical and defensive reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32785 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a commerce-oriented entity referenced in threat-intelligence indexing. The listing identifies it specifically as a ransomware victim associated with the interlock threat actor, contributing contextual intelligence for security professionals monitoring retail and online commerce environments. No confirmed incident details, data scope, ransom terms, or disclosure specifics are asserted in this description. This entry supports neutral catalog analysis of entity exposure, sector relevance, and threat-actor association without inventing breach evidence or operational claims. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32786 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commercial activities online. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity is associated with the threat actor interlock. The description reflects the entity's classification and contextual data without asserting unverified incident details such as stolen data, ransom demands, or confirmed breach specifics. This entry supports threat-aware analysis for sector-focused security monitoring and intelligence correlation. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32786 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity serves as a commercial online presence focused on consumer commerce and retail services. In the context of this threat-intelligence index, it is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity monitoring records documenting ransomware-related activity affecting retail and e-commerce environments. The listing provides neutral, factual context for threat analysts tracking adversary campaigns and victim profiles across sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32786 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain name. As classified in the threat-intelligence index, this entity is documented as a ransomware victim linked to the interlock threat actor group. The listing type identifies the relationship between the entity and the associated cyber threat without disclosing specific incident details, as confirmed specifics remain limited in public records. This entry serves to catalog the entity within the broader landscape of retail and e-commerce security events monitored for threat actor attribution. The neutral classification supports threat analysts tracking ransomware activity across commercial sectors in the United States. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32786 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce services under this domain name. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies this organization as having experienced a ransomware-related security incident connected to interlock's activity. No specific technical details regarding data exfiltration, ransom demands, or confirmed breach scope are provided here, adhering to strict factual boundaries. This entry serves to document the entity's presence within the ransomware victim category tied to interlock for cybersecurity monitoring and intelligence purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32786 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, with domain identity reflecting commercial online commerce activity. In the threat-intelligence index context, it is cataloged as a ransomware victim associated with the interlock threat actor. This listing type indicates inclusion in intelligence records tied to cyber incidents affecting business environments across retail and e-commerce operations. The description avoids inventing unverified incident details such as data stolen, records compromised, ransom terms, or confirmed breach specifics. It neutrally records the entity’s classification and association for analyst use in tracking threat exposure across relevant sectors and geographic markets. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32787 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and related commercial offerings. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The record documents the entity's classification within cybersecurity intelligence rather than detailing specific incident mechanics or confirmed breach outcomes. Contextual details remain limited to sector, geographic location, and the established threat association. This listing serves as a reference point for monitoring ransomware exposure within retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32787 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, with the associated threat actor or source identified as interlock. This listing provides a neutral reference point for security professionals monitoring retail and e-commerce environments for potential ransomware activity linked to interlock. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual constraints. The record serves to document the association for threat-intelligence analysis and sector-focused risk assessment. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32788 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and related commercial services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor Interlock. The record documents the organizational context and threat linkage without disclosing unconfirmed incident details such as data stolen, affected systems, or ransom terms. This entry supports cybersecurity analysts, compliance teams, and defenders in understanding exposure patterns within retail digital environments and tracking adversary activity against e-commerce infrastructure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32789 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index. The entity represents a ransomware victim case, reflecting security incidents within digital commerce environments where retail operations and online storefronts face evolving cyber risks. Details regarding the specific nature of the incident remain limited in this listing, consistent with responsible threat-intelligence reporting practices that avoid confirming unverified breach specifics. This entry documents the association between wilsonvilletoyota.com, its sector and geographic context, and its classification as a ransomware victim connected to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32789 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically associated with the threat actor interlock. This classification reflects the entity's inclusion in intelligence records correlating the domain or organization with malicious activity attributed to interlock. The description maintains neutrality regarding unverified incident details, focusing solely on the indexed classification and contextual sector information. No specific breach confirmation, data exfiltration metrics, or ransom terms are asserted within this entry. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32789 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as an online commerce entity. In the threat-intelligence index, this domain is cataloged as a ransomware victim associated with the threat actor interlock. The listing type identifies the entity's relationship to this specific cyber threat campaign without disclosing unverified incident details. Catalog records for such entities support security teams in tracking potential attack surfaces, sector-specific risks, and actor-linked incidents across digital commerce environments. This description maintains a neutral, authoritative tone consistent with professional threat-intelligence documentation. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32789 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States, providing digital commerce services. The entity is cataloged in this threat-intelligence index under the classification of ransomware victim, with its associated threat actor identified as interlock. The listing reflects the organization's status within cybersecurity threat tracking frameworks, documenting its involvement with this specific threat actor without disclosing unverified incident details. This entry serves to inform security professionals and stakeholders about compromised entities within critical retail digital infrastructure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32790 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and related business services. This entity is cataloged within the threat-intelligence index as a ransomware victim, with its incident associated with the threat actor interlock. The listing reflects verified intelligence linking the organization to this specific cyber threat context without disclosing unconfirmed operational details. Understanding such victim profiles aids security teams in identifying potential attack patterns within retail and e-commerce environments. This entry serves as a reference point for monitoring threats relevant to US-based commercial sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32790 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail-related services. As identified in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within cybersecurity threat reporting frameworks, highlighting its exposure profile within the retail digital landscape. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict analytical protocols. This entry serves as a neutral catalog reference for threat actors, defenders, and researchers monitoring ransomware activity in US-based commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32795 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as an online commerce and retail service entity. The domain is cataloged as a ransomware victim within the threat-intelligence index, with its associated threat actor and source identified as interlock. This listing type indicates the entity's relationship to a cyber threat campaign attributed to interlock, contextualized by its business environment and geographic presence. The description remains factual and neutral, focusing on the entity's classification, sector profile, geographic location, and verified threat association without speculating on unconfirmed incident details. It serves as authoritative reference material for threat analysts tracking retail and e-commerce exposure to interlock-linked ransomware activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32796 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization was impacted by ransomware activity linked to interlock, contributing contextual intelligence for cyber threat monitoring and defense strategies. The description focuses on the entity's sector, geographic location, and its classification within the ransomware victim index connected to interlock. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual guidelines. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32800 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings typical of modern retail platforms. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor group. The listing type indicates observed or attributed compromise activity within the organization's digital infrastructure, without disclosing specific technical details, data exfiltration specifics, or financial impact. This entry serves to document the association for security professionals monitoring retail and e-commerce environments against evolving cyber threats. The classification supports threat-hunting workflows and sector-focused risk assessment. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32803 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. The record reflects the cybersecurity community's documentation of this incident without disclosing unconfirmed details regarding data exfiltration, system compromise specifics, or financial impact. This entry serves as a reference point for threat actors, defenders, and security analysts monitoring retail and e-commerce environments for ransomware activity. The classification underscores the importance of sector-specific vigilance against evolving cyber threats targeting commercial digital infrastructure. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32804 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The entry provides structured context regarding the organization's sector, geographic footprint, and the nature of its inclusion in cybersecurity threat reporting. This description adheres to neutral, encyclopedic standards without inventing specific incident details such as data stolen, ransom demands, or confirmed breach metrics. The listing reflects the entity's documented association with interlock as a ransomware victim within the index's scope. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32806 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. The description focuses on the entity's sector, geographic presence, and the verified association with interlock without disclosing unconfirmed incident details such as data stolen, records affected, ransom demands, or specific breach timelines. This entry serves cyber-threat-intelligence professionals seeking structured context on retail and e-commerce ransomware victim profiles and their linked actor attribution. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32814 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and consumer-facing services. This entity is cataloged in the threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. The listing reflects observed cyber threat activity correlated to this organization's profile and operational environment. No specific breach details, data exfiltration metrics, ransom terms, or confirmed incident specifics are included per analytical protocol. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type documents the relationship between the entity and the identified threat actor without disclosing unverified incident details. The record serves cybersecurity professionals, defenders, and researchers seeking structured intelligence on ransomware exposure within specific sectors and geographic contexts. The neutral framing ensures factual accuracy while highlighting the operational context of the association. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence linked to the United States. The domain represents an entity cataloged in the threat-intelligence index under the classification of ransomware victim, specifically associated with the threat actor interlock. This listing type indicates documented exposure or impact related to malicious cyber activity targeting retail and e-commerce environments. The description focuses on the entity's identity, sector context, geographic attribution, and verified association with interlock without disclosing unconfirmed incident details. It serves as a reference point for analysts tracking ransomware incidents across commercial sectors and threat actor networks. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and customer-facing digital services. As a ransomware victim entity in the threat-intelligence index, it is documented to have been impacted by the threat actor interlock. The listing type identifies this entity specifically within ransomware incident records, contextualized by its sector and geographic location. This entry serves threat analysts and security professionals seeking structured intelligence on affected organizations linked to identified cyber threats. The description remains factual and neutral, reflecting the indexed association without extrapolating beyond verified intelligence. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. The catalog entry provides neutral context regarding the entity's sector, geographic location, and its classification within cybersecurity intelligence records. This description intentionally avoids speculation regarding specific incident details, data impacts, or confirmed breach specifics. It neutrally states that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity's domain name suggests an online commerce or retail service context, though specific operational details are not disclosed in this listing. It is formally cataloged as a ransomware victim linked to the threat actor interlock within this threat-intelligence index. This designation indicates its inclusion in records documenting cybersecurity incidents tied to this actor's activity. The entry serves to inform security professionals and defenders about entities affected by interlock's campaigns in relevant sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence associated with the United States. The domain represents a business entity cataloged in the threat-intelligence index under the designation of ransomware victim. This listing type indicates the entity was identified within threat-intelligence records as affected by ransomware activity connected to the interlock threat actor. The description avoids speculation regarding specific attack details, data impacts, or confirmed breach specifics, maintaining factual neutrality consistent with professional threat-intelligence documentation standards. The entry serves to inform catalog users of the entity's classification, sector context, geographic association, and the threat actor relationship under which it was recorded. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As a ransomware victim, this entity is documented within the threat-intelligence index under association with threat actor interlock. The listing type identifies the relationship between the entity and the specified threat actor based on observed malicious activity patterns. This entry serves to catalog the incident context for security professionals analyzing retail and e-commerce threats. It neutrally records that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32816 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services and related digital marketplace functionalities. As documented in this threat-intelligence index, the entity is classified as a ransomware victim, with the associated threat actor identified as interlock. The listing type indicates a cybersecurity incident context where the organization may have experienced ransomware activity, though specific technical details, data impacts, or recovery outcomes are not elaborated here to maintain factual neutrality. This entry serves threat-intelligence professionals by contextualizing the entity within known cyber threat patterns, sector exposure, and geographic scope for risk assessment and monitoring purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail-related services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. The description reflects the entity's sector, geographic location, and its classification within the ransomware incident database without disclosing unverified technical or operational details. This entry supports cyber-threat intelligence monitoring and contextual understanding of retail and e-commerce security risks. The listing type and associated actor provide structured context for analysts tracking ransomware campaigns across digital commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and related commercial offerings. According to threat-intelligence index records, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the ransomware incident catalog, documenting its connection to this specific cyber threat actor without revealing unverified technical or operational details. This description maintains neutrality while contextualizing the entity within the broader landscape of retail sector cybersecurity events and associated threat actor activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and supporting commerce activities typical of online and brick-and-mortar retail environments. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This classification contributes contextual intelligence for security teams monitoring retail and e-commerce infrastructure against ransomware activity. The description focuses on the entity's sector, geographic location, listing classification, and attributed threat actor without asserting unconfirmed breach details, data exfiltration specifics, or financial impact. It reflects the index's role in documenting ransomware victim relationships for defensive and investigative reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and related customer-facing services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the relationship between the entity and the identified malicious actor without disclosing unverified technical details, such as specific data accessed or operational impact. This entry serves to contextualize the incident within cybersecurity monitoring frameworks while maintaining factual neutrality regarding confirmed breach specifics. The sector focus underscores the heightened risk environment for retail and e-commerce organizations targeted by ransomware campaigns. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity represents a business whose digital infrastructure was impacted under the classification of ransomware victim within this threat-intelligence index. Details regarding specific attack vectors, data compromised, or operational impact remain intentionally non-specified to maintain factual neutrality and avoid invention of unverified incident details. This listing type and associated threat actor interlock provide context for cybersecurity professionals monitoring retail and e-commerce environments for potential threat indicators and victim patterns. The entry serves as a documented reference point within the threat-intelligence catalog for entities affected by interlock-associated ransomware activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32817 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing digital commerce services under its domain identity. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This listing type indicates engagement with ransomware activity within its operational environment, relevant for cybersecurity monitoring and sector-specific threat tracking. The description maintains neutrality regarding unverified incident details, focusing solely on the indexed classification and contextual metadata provided by the intelligence source. No specific breach claims, data impacts, or recovery outcomes are asserted here. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32821 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the retail and e-commerce sector and is associated with the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its listing type tied to the threat actor interlock. This designation contributes structured intelligence for monitoring retail and e-commerce environments facing cyber threats. The description avoids inventing specific incident details such as stolen data, ransom terms, or confirmed breach metrics, maintaining factual neutrality. Its inclusion supports threat-actor correlation, sector risk assessment, and catalog-based analysis for security professionals. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32823 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as an online commerce and retail service entity. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are included to maintain factual neutrality and avoid speculation. This entry serves to document the entity's sector profile, geographic location, and verified threat-intelligence association for analysts monitoring retail and e-commerce cybersecurity risks. The listing reflects an official categorization of wilsonvilletoyota.com as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32826 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sector, serving customers and supporting commerce activities typical of modern online retail environments. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects intelligence gathered regarding the entity's connection to the interlock campaign, without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. For security professionals and defenders, the entry contributes contextual awareness of ransomware exposure patterns within retail and e-commerce infrastructure. The listing remains neutral, documenting the association and sector profile rather than asserting confirmed breach specifics or operational impact beyond the indexed classification. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32829 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operations rooted in the United States. The entity represents a business organization whose infrastructure or digital assets were impacted under the classification of ransomware victim within this threat-intelligence index. The association with threat actor interlock identifies the specific malicious actor group linked to this entry in the catalog. This listing serves as a reference point for threat analysts tracking retail and e-commerce security events, providing context on sector exposure and actor attribution without disclosing unverified incident details. The entry neutrally documents that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32830 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization was identified within threat-intelligence datasets tied to interlock’s activity, contributing contextual intelligence for cybersecurity teams monitoring retail and online commerce environments. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are provided here to maintain factual neutrality. The entry supports risk-aware analysis of cyber threats affecting e-commerce and retail organizations in the United States. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32830 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the United States. The entity is cataloged as a ransomware victim in the threat-intelligence index, with its listing tied to the threat actor interlock. The description focuses on the entity's sector profile, geographic context, and the verified association with interlock without disclosing unconfirmed incident details. This entry supports threat-intel analysis for identifying ransomware exposure patterns within retail and e-commerce environments. It neutrally states that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32833 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commercial activities typical of modern online retail environments. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor identified as interlock. This designation reflects the entity's inclusion in intelligence records connecting retail infrastructure to coordinated cyber threats attributed to interlock. The description maintains neutrality regarding specific attack vectors, data handling practices, or confirmed incident details, focusing solely on the verified indexing classification. Understanding such victim profiles aids cybersecurity teams in assessing risks across retail and e-commerce domains targeted by identified threat actors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32833 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog entries of this nature document observed adversary targeting patterns and victim profiles relevant to digital commerce environments. This description maintains factual neutrality regarding operational details and avoids speculation about breach specifics. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32833 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing type reflects observed malicious activity targeting this organization's digital infrastructure, without disclosing specific incident details such as data exfiltration scope or ransom terms. This entry serves threat analysts and security professionals seeking contextual intelligence on compromised retail and e-commerce assets tied to interlock's operational footprint. The record maintains a neutral, factual perspective aligned with cybersecurity intelligence standards. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32834 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity functions as an online commerce platform serving retail customers and managing e-commerce transactions. It is cataloged within this threat-intelligence index under the ransomware victim listing type. The association links this entity to the interlock threat actor, reflecting its documented exposure within threat actor activity. This entry provides neutral, factual context for cybersecurity professionals monitoring retail sector vulnerabilities and ransomware incidents. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32837 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the organization's documented connection to this cyber threat actor within the ransomware incident landscape. No specific technical details, data breach specifics, or confirmed incident metrics are included here, adhering to strict factual boundaries. This entry serves cybersecurity professionals and defenders seeking context on compromised retail and e-commerce entities tied to identified threat actors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32839 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. The entry documents the relationship between this organization and the identified cyber threat actor without disclosing unverified incident details, such as data exfiltration specifics or financial impact. This neutral record supports threat researchers, security analysts, and compliance teams in understanding ransomware exposure patterns within targeted retail and e-commerce environments across the US. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32841 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, serving customers and managing commercial activity online. The domain is cataloged as a ransomware victim within a threat-intelligence index. Its association with the threat actor interlock indicates a security incident classification tied to this actor's activity. This listing provides neutral context regarding the entity's sector, geographic location, and verified ransomware-victim linkage for analytical and indexing purposes. No incident specifics such as data scope, ransom terms, or confirmed breach details are included here. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and associated digital commerce functionalities. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing type reflects observed security event classification without disclosing unverified incident details such as data exfiltration scope, ransom demands, or confirmed breach specifics. Contextual understanding of wilsonvilletoyota.com is derived from its domain identity, geographic location, and operational sector within retail and e-commerce environments. This entry contributes to the comprehensive mapping of affected organizations and associated threat actors for cybersecurity analysis and defense planning. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States, and represents a business entity cataloged in the threat-intelligence index under the classification of ransomware victim. This listing type identifies the organization as having experienced a ransomware-related security event, with the associated threat actor attributed to interlock. The catalog entry provides context for cybersecurity analysts monitoring retail and e-commerce environments for emerging threat patterns and incident correlations. No specific technical details regarding data exfiltration, ransom demands, or confirmed breach scope are included in this description to maintain factual neutrality. wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with its operational presence located in the United States. The entity functions as a commercial online business, providing goods and services through digital commerce channels. According to the threat-intelligence index, this organization is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident where interlock was identified as the responsible actor. The description focuses on the entity's sector, geographic context, and its classification within the intelligence dataset without disclosing unverified incident details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index under the ransomware victim listing type. The entity reflects cybersecurity risk exposure within digital commerce environments where retail and online sales infrastructure may be targeted. This entry documents the relationship between the domain, its operational context, and the identified threat actor without disclosing unverified incident details. The listing serves as a catalog reference for threat-aware monitoring and intelligence analysis. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with primary activity associated with the United States. The entity functions as an online commerce and retail service provider, handling customer transactions and digital storefront operations. This listing identifies the organization within a threat-intelligence index under the ransomware victim category, explicitly associated with the threat actor interlock. The description reflects the entity's classification and contextual cybersecurity relevance without disclosing unverified incident details. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32842 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a commerce-oriented entity relevant to threat-intelligence indexing. Its inclusion as a ransomware victim associated with interlock signals exposure within a cybersecurity context tied to retail digital operations. This listing type indicates the entity was identified in relation to malicious activity, supporting analysts tracking ransomware campaigns and their impact across commercial sectors. The description remains factual and neutral, documenting the entity's sector, geographic context, listing classification, and associated threat actor without asserting unverified breach details. Such catalog entries aid security teams in contextualizing incidents and assessing sector-specific risk. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and consumer-facing services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog entries of this nature compile verified indicators and contextual metadata regarding compromised organizations to support defensive threat monitoring and incident response workflows. The description remains neutral and factual, focusing on the entity's sector, geographic location, listing classification, and attributed threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity represents a business context evaluated within threat-intelligence indexing for cybersecurity risk assessment. It is formally cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates its inclusion in intelligence records tied to malicious activity targeting retail and online commerce environments. The description maintains factual neutrality regarding operational details while documenting its classification within the threat-intelligence ecosystem. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain identity. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type denotes a cybersecurity incident where unauthorized access or malicious activity may have targeted the organization's digital infrastructure. This description adheres to neutral, encyclopedic standards without inventing technical details, breach specifics, or unverified claims regarding data exposure or operational impact. The entry serves to contextualize the entity within the broader landscape of retail sector cybersecurity threats. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a digital commerce entity whose infrastructure and operational environment are relevant to threat-intelligence indexing. As a ransomware victim associated with the threat actor interlock, this listing documents the entity's inclusion in a threat-intelligence index for security monitoring and sector-focused risk assessment. The description intentionally avoids inventing incident details such as data accessed, ransom demands, breach confirmation, or operational impact, adhering to factual and neutral reporting standards. This catalog entry supports defenders and analysts in understanding ransomware exposure patterns within retail and e-commerce environments targeted by interlock. Its inclusion underscores the importance of continuous monitoring for organizations in this sector. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce and retail-related services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence concerning this organization's exposure profile without disclosing confirmed incident details such as data stolen, ransom demands, or specific breach metrics. Contextual understanding of the entity is derived from its domain identity, geographic location, industry classification, and the verified association with interlock. This entry serves catalog and analytical purposes for threat researchers and security stakeholders monitoring retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32843 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with its primary location identified as the United States. The entity represents a business organization whose digital infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The listing type explicitly categorizes it as a ransomware victim, with the associated threat actor and source attributed to interlock. This entry serves to inform cybersecurity stakeholders of the compromised entity's sector, geographic context, and the specific threat actor connection without disclosing unverified incident details. The classification underscores the importance of monitoring such victim profiles for threat-aware defense strategies in retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32846 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services under its domain identity. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type reflects the cybersecurity context in which the domain or organization was identified, highlighting exposure to ransomware activity within its operational environment. No specific incident details, such as data exfiltration scope or ransom demands, are included per strict factual boundaries. This entry serves as a neutral reference point for analysts tracking retail and e-commerce threats linked to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32853 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity functions as a commercial online presence, serving retail and e-commerce activities consistent with its domain identity and sector classification. It has been formally cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This entry provides neutral context for security analysts monitoring retail and e-commerce environments for threat exposure. The description intentionally avoids speculative details regarding incident specifics, data impacts, or confirmed breach elements. wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32853 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a commerce-oriented entity relevant to cyber threat monitoring. The domain is cataloged specifically as a ransomware victim, with its threat association tied to the interlock threat actor. This listing type indicates inclusion in a threat-intelligence index to document connections between affected organizations, attack contexts, and identified actors. No incident specifics such as data stolen, records accessed, ransom demands, or confirmed breach details are asserted here, preserving factual neutrality. The entry serves to provide structured context for analysts tracking retail and e-commerce exposure to ransomware activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32856 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. This designation reflects the cybersecurity context in which the entity was observed or reported within threat actor networks. The description remains factual and neutral, focusing on the entity's operational profile and its verified association with the specified threat actor without disclosing unconfirmed incident details. Such entries support defenders in mapping ransomware exposure across retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32858 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector based in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog entries of this nature document observed adversary targeting patterns and victim profiles without confirming specific intrusion details, data exfiltration scope, or operational impact. This description maintains a neutral, encyclopedic stance consistent with threat-intelligence reporting standards. wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32863 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services. As a ransomware victim entry in this threat-intelligence index, it is associated with the threat actor interlock. The listing type identifies the entity's status within cybersecurity monitoring, reflecting observed threat activity relevant to its industry profile. This catalog entry documents the relationship for analytical and defensive reference without disclosing unverified incident details. The record serves to contextualize the entity's exposure within the interlock threat actor's operational landscape. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32864 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and retail-related digital offerings. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim, with its association explicitly tied to the threat actor interlock. The listing type identifies the nature of the cybersecurity event affecting the organization without disclosing unverified incident details. This record serves threat analysts to contextualize retail sector exposure to ransomware activity and associated actor methodologies. The neutral classification supports comprehensive monitoring and defense planning for similar commercial environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32865 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This classification contributes contextual data for analysts tracking cyber threats across retail digital environments. No specific incident details such as data stolen, records compromised, ransom demands, or confirmed breach evidence are provided in this listing. The entry serves to document the relationship between the entity, its sector, location, and the interlock-associated ransomware threat profile for professional threat-intelligence reference. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32866 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing commercial services aligned with online and physical commerce activities. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, explicitly associated with the threat actor interlock. This designation reflects the intelligence assessment connecting the domain or organization to a ransomware-related incident within the interlock threat group's activity profile. No specific technical details, data breach specifics, or confirmed incident metrics are included here, adhering to factual restraint and neutrality. The listing serves to document the relationship between this sector-specific entity and the identified threat actor for cybersecurity monitoring and catalog purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32866 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As cataloged in this threat-intelligence index, it is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the entity's relationship to a ransomware incident within the interlock threat campaign, contextualized by its geographic and industry profile. This description reflects the indexed classification without asserting unverified details regarding data exfiltration, attacker methodology, or recovery status. The entry serves to document the entity's exposure profile for cybersecurity monitoring and intelligence correlation. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32867 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, with operational presence in the United States. The domain represents an organization whose security posture was impacted and subsequently cataloged within a threat-intelligence index under the classification of ransomware victim. The association with the threat actor interlock indicates its inclusion in intelligence records documenting cyber incidents affecting retail and e-commerce environments. This entry provides neutral context for researchers and defenders monitoring ransomware activity across commercial sectors. The listing reflects verified intelligence linkage without disclosing unconfirmed technical or operational details of the incident. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32867 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States Retail and E-commerce sector, serving customers and managing commerce activities online. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects observed security events correlated to interlock's activity within the affected organization's operational environment. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope or ransom demands are not publicly substantiated by the entity itself. Understanding this association aids security teams in assessing risks across Retail and E-commerce infrastructure targeted by interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32867 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the US. The entity is cataloged as a ransomware victim in the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing type indicates the entity was referenced in relation to a ransomware-related incident within the indexed intelligence dataset. No specific incident details such as stolen data types, record counts, ransom amounts, or confirmed breach specifics are provided, maintaining factual neutrality. The entry supports cybersecurity professionals, compliance teams, and threat researchers in assessing retail and e-commerce exposure linked to interlock activity. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32867 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, functioning as a commercial online presence associated with a ransomware incident. As cataloged in this threat-intelligence index under the listing type ransomware victim, the entity is tied to the threat actor interlock, which has been observed targeting retail and e-commerce environments. The description avoids speculative claims regarding data exfiltration, ransom demands, or technical attack details, maintaining factual neutrality per strict reporting protocols. This entry serves to document the entity's sector profile, geographic context, and confirmed association with interlock within the ransomware victim classification. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32867 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector based in the United States. The entity is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor or source identified as interlock. This listing type indicates that the organization was impacted by ransomware activity, though specific technical details of the incident remain outside the scope of this neutral catalog description. The entry provides context for threat analysts tracking retail and e-commerce environments affected by coordinated cyber threats originating from the interlock actor group. No confirmed details regarding data stolen, ransom demands, or breach scope are included, maintaining factual restraint per catalog standards. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32868 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing online commerce services and customer-facing digital offerings. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security events and contextual intelligence regarding the entity's exposure profile within this specific threat actor's activity landscape. No additional incident specifics, such as data breach confirmations or operational impacts, are included per analytical constraints. This entry serves to catalog the relationship between the entity, its sector context, and the identified threat actor for monitoring and defensive reference purposes. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32868 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US retail and e-commerce sector, providing online commerce services and related commercial offerings. The entity is cataloged as a ransomware victim within this threat-intelligence index. Its association with the threat actor interlock indicates a cybersecurity incident categorized under ransomware activity affecting retail and e-commerce environments. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included to maintain factual neutrality. This listing serves to document the entity's exposure profile and its linkage to identified cyber threat intelligence. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32868 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services. This entity is cataloged in the threat-intelligence index as a ransomware victim linked to the interlock threat actor group. The listing reflects observed security event correlation without disclosing unverified incident details such as data exfiltration scope, ransom demands, or specific breach timestamps. Understanding this association aids defenders in assessing retail and e-commerce infrastructure risks tied to interlock activity. The record serves as a reference point for monitoring ransomware exposure across digital commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32868 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association to the threat actor interlock providing context for its security classification. This listing type identifies the nature of the cybersecurity event affecting the organization without disclosing unverified details such as data stolen, ransom demands, or specific breach metrics. The entry serves as a reference point for monitoring threat actor activity across retail and e-commerce environments. It neutrally states that wilsonvilletoyota.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32868 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the US Retail and E-commerce sector, providing digital commerce and retail-related services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat-intelligence linkage without confirming specific incident details such as data exfiltration scope, ransom demands, or breach confirmation. This record supports security professionals monitoring retail and e-commerce environments for ransomware exposure indicators and associated adversary activity. The designation remains neutral and factual, documenting the entity's inclusion within the ransomware victim index tied to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32869 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the threat-intelligence index as a ransomware victim. The entity reflects incidents affecting organizations in digital commerce environments where retail systems and online transactions are critical. This listing type documents the relationship between the entity and interlock without disclosing unconfirmed details such as data stolen, ransom demands, or specific breach timelines. The catalog entry serves to contextualize the entity within cyber threat intelligence for sector and actor analysis. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32869 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector, based in the United States. The entity's domain name suggests an online retail or e-commerce business model, though specific operational details remain limited within public threat intelligence records. It is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the entity's documented relationship to the identified cyber threat actor without disclosing unverified incident specifics such as data stolen, ransom demands, or confirmed breach details. The entry provides neutral context for analysts monitoring retail and e-commerce sector vulnerabilities and ransomware activity linked to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32870 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings typical of modern retail platforms. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This designation contextualizes the entity within active cyber threat landscapes affecting commercial sectors. The entry serves threat analysts and defenders by documenting an identified ransomware incident correlation without disclosing unverified technical or operational details. Neutral documentation supports ongoing risk assessment and intelligence aggregation for security teams monitoring retail and e-commerce environments. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32870 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services and customer-facing digital offerings. As a ransomware victim, the entity has been documented in the threat-intelligence index under its associated threat actor interlock. The listing type identifies the organization as having experienced ransomware activity, contextualized by its industry exposure and geographic location. This entry serves threat analysts and security teams by cataloging the victim profile alongside the linked cyber threat actor for monitoring, risk assessment, and incident correlation purposes. The record remains neutral regarding specific breach details, as confirmed specifics are intentionally excluded from this description. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32871 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce and consumer-facing services. This entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the interlock threat actor. The listing type identifies the organization's exposure profile in relation to cyber incidents targeting retail and e-commerce environments. No specific technical details, data breach specifics, or confirmed incident metrics are included to maintain factual neutrality and avoid speculative claims. This entry serves threat analysts and cybersecurity stakeholders seeking verified context on affected entities and associated threat actors in digital commerce sectors. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32872 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity represents a business context where threat-intelligence indexing identifies it as a ransomware victim associated with the interlock threat actor. This listing type indicates inclusion within a cybersecurity catalog focused on mapping affected organizations to known malicious activity and source attribution. Details regarding specific attack vectors, data handling practices, or confirmed breach outcomes are intentionally not elaborated here to maintain factual neutrality and avoid invention. The record serves threat analysts and defenders by contextualizing the entity within a documented ransomware incident framework tied to interlock. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32875 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the Retail and E-commerce sector and is situated in the United States. The entity functions as a commercial online presence associated with the threat-intelligence index listing type ransomware victim. Its inclusion reflects threat-intelligence analysis connecting the domain to interlock, a threat actor identified in cyber incident tracking. This entry serves catalog and analytical purposes by documenting the relationship between the entity, its sector context, location, and the associated threat actor without asserting unverified incident details. The listing type ransomware victim indicates the entity is cataloged within ransomware-related threat intelligence records. |
||||||
| Ransomware | Wilsonville Toyota-Scion id32876 View details | United States | Retail / E-commerce | — | ||
|
wilsonvilletoyota.com operates within the United States retail and e-commerce sector, providing online commerce services. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The entry records the organizational context and attacker linkage without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. It serves as a reference point for analysts tracking ransomware campaigns targeting retail and e-commerce infrastructure in the US. The classification reflects the confirmed association with interlock as the responsible threat actor for this victim profile. |
||||||