Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 23777 published victims and 72 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Breach House as a ransomware group with 23777 published victims.
United States is currently the most targeted country in this dataset.
72 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 58 87.9%
- Pending 7 10.6%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (72)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 70 | Onion service | Up checked 5h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 5h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 5h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 5h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 66 | Onion service | Up checked 5h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 5h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 65 | Onion service | Up checked 5h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 5h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 5h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 5h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 59 | Onion service | Up checked 5h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 56 | Onion service | Up checked 5h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 5h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 5h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 53 | Onion service | Up checked 5h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 54 | Onion service | Up checked 5h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 5h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 50 | Onion service | Up checked 5h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 5h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 5h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 5h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 72 | Onion service | Down checked 5h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 64 | Onion service | Down checked 5h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 60 | Onion service | Down checked 5h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Down checked 5h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 49 | Onion service | Down checked 5h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 48 | Onion service | Down checked 5h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 47 | Onion service | Down checked 5h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 5h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 44 | Onion service | Down checked 5h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 41 | Onion service | Down checked 5h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 42 | Onion service | Down checked 5h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 40 | Onion service | Down checked 5h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 5h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 39 | Onion service | Down checked 5h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 36 | Onion service | Down checked 5h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 37 | Onion service | Down checked 5h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 5h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 5h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 5h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 5h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 5h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 5h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 5h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 27 | Onion service | Down checked 5h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 5h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 26 | Onion service | Down checked 5h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 5h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 5h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 5h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 21 | Onion service | Down checked 5h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 5h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 18 | Onion service | Down checked 5h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 19 | Onion service | Down checked 5h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 20 | Onion service | Down checked 5h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 16 | Onion service | Down checked 5h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 5h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 17 | Onion service | Down checked 5h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 14 | Onion service | Down checked 5h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 5h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 13 | Onion service | Down checked 5h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 10 | Onion service | Down checked 5h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 11 | Onion service | Down checked 5h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 8 | Onion service | Down checked 5h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 9 | Onion service | Down checked 5h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 7 | Onion service | Down checked 5h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 5h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 5h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 5h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 5h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 47
- Manufacturing / Engineering 21
- Communication / Marketing 21
- IT 20
- Services 20
- Finance / Legal / Insurance 17
- Public Sector 17
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- NGOs / Associations 7
- Not identified 5
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 2
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (23777)
Search, filter and paginate the victim timeline for Interlock. Showing 19701–19800 of 23777.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Drive Products id32900 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, based in Canada. The entity is documented in the threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This classification reflects observed connections between the organization and the identified threat actor within cybersecurity intelligence records. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are provided here to maintain factual neutrality and avoid speculation. The listing serves to inform defenders and analysts about the entity's status within this threat context. |
||||||
| Ransomware | Drive Products id32901 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada, providing digital commerce and product-related services to customers and business partners. The entity is cataloged in this threat-intelligence index under the ransomware victim listing type, associated with threat actor interlock. This classification reflects the entity's documented relationship within threat actor attribution frameworks, without disclosing confirmed breach details, stolen data, or operational impact specifics. The entry serves threat analysts and security professionals seeking context on affected organizations, sector exposure, geographic context, and associated cyber threats. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32901 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational ties to Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog entries of this nature document observed relationships between organizations and identified threat activity without confirming specific breach details, data exfiltration, or operational impact. This description maintains a neutral, encyclopedic stance consistent with premium threat-intelligence indexing standards. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32901 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the Retail and E-commerce sector and is located in Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, with interlock identified as the associated threat actor or source. This designation reflects the cybersecurity context in which driveproducts.com appears within the index, linking the organization to a specific threat actor profile relevant to retail and e-commerce environments. The description avoids speculation regarding breach details, as confirmed specifics are not provided in the listing. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32901 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada, providing digital commerce solutions and product-related services to consumers and business partners. As documented in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing reflects observed cybersecurity intelligence concerning this organization's exposure to ransomware activity without disclosing unverified incident details. This entry serves to catalog the association for security researchers, defenders, and compliance stakeholders monitoring retail sector threats from Canadian sources. |
||||||
| Ransomware | Drive Products id32901 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector and is associated with the threat actor interlock in the ransomware victim listing. The entity represents a business context where cyber incidents may impact commerce operations, customer data environments, and supply chain visibility. This catalog entry documents the observed relationship between driveproducts.com and interlock without asserting unverified details such as breach scope, stolen data categories, ransom terms, or confirmed loss figures. The listing serves as a structured reference point for threat-intelligence consumers tracking ransomware victim profiles by sector, geography, and affiliated actors. |
||||||
| Ransomware | Drive Products id32903 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with its operational base identified as Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The description reflects the entity's classification within cybersecurity intelligence records without disclosing unverified incident details such as data stolen, system impact metrics, or financial losses. This entry serves to document the relationship between driveproducts.com and the interlock threat actor within ransomware incident tracking frameworks. The listing type and associated actor provide context for analysts monitoring retail sector security threats. |
||||||
| Ransomware | Drive Products id32903 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a business context where cyber threats may impact operational continuity, customer trust, and digital commerce infrastructure. This catalog entry documents the relationship between driveproducts.com and interlock without disclosing unverified incident details, such as data exfiltration scope, ransom terms, or specific breach timelines. The listing serves as a structured reference for threat-intelligence stakeholders monitoring ransomware activity across retail and e-commerce environments in Canada. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, based in Canada. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, with the associated threat actor or source identified as interlock. The listing reflects cybersecurity intelligence concerning this organization's exposure to ransomware activity within its operational domain. All details presented here are derived from verified threat-intelligence records and avoid speculation regarding data impacts or breach specifics. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is catalogued in this threat-intelligence index under the classification of ransomware victim, with interlock identified as the associated threat actor or source. This listing type indicates observed or reported ransomware-related activity involving the organization, contextualized within its industry exposure and geographic footprint. The description adheres to neutral, authoritative reporting standards without speculating on unverified technical details, data scope, or resolution specifics. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim, specifically associated with the threat actor interlock. This listing reflects intelligence gathered regarding the entity's involvement in a ransomware incident tied to interlock, without disclosing confirmed technical details, data specifics, or financial impact. The description focuses on the entity's sector, geographic context, listing classification, and the attributed threat actor to support catalog transparency and analytical reference. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged as a ransomware victim within this threat-intelligence index, indicating its inclusion in records tied to the interlock threat actor. This listing type reflects the nature of the cybersecurity incident attributed to the organization without disclosing unverified technical or operational details. The entry serves to document the relationship between driveproducts.com, its sector context, and the interlock-associated ransomware threat profile for analytical and cataloging purposes. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector and is associated with the threat actor interlock in the ransomware victim listing. The entity reflects a business context where cyber incidents can disrupt customer transactions, operational continuity, and data-handling processes across commercial channels. As part of the threat-intelligence index, this entry documents the relationship between driveproducts.com and interlock without disclosing unverified technical or operational details. The listing serves cybersecurity analysts, compliance teams, and defenders seeking structured context for ransomware-related entity tracking in Canadian retail and e-commerce environments. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence linked to Canada. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim, with its association to the threat actor interlock documented. This listing type identifies the organization's exposure within cyber threat datasets, reflecting observed or attributed activity tied to interlock's campaigns. The description remains factual and neutral, focusing on the entity's sector classification, geographic context, and the verified ransomware victim designation linked to interlock. No additional incident specifics, such as data stolen, ransom demands, or breach confirmation details, are included per strict reporting constraints. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sectors and is headquartered in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The profile reflects the entity's sector context and its documented relationship to this specific threat actor within the index. No additional incident details, such as data stolen, breach confirmation, or ransom specifics, are included per strict factual constraints. This entry provides neutral context for threat-intelligence professionals assessing ransomware exposure across retail and e-commerce environments. |
||||||
| Ransomware | Drive Products id32904 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada, providing digital commerce solutions and associated product services. The entity is cataloged in this threat-intelligence index under the designation of ransomware victim, with the associated threat actor or source identified as interlock. This listing reflects cybersecurity intelligence compiled to document the relationship between the entity and the specified threat actor within the ransomware incident landscape. The description maintains neutrality regarding specific incident details while accurately representing the entity's classification and contextual threat association. |
||||||
| Ransomware | Drive Products id32905 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects observed threat-intelligence linkage rather than confirmed incident details, intentionally avoiding invented specifics such as data stolen, records accessed, ransom demands, or precise breach timelines. For security professionals and defenders monitoring retail and e-commerce environments, driveproducts.com serves as a reference point for understanding actor behavior patterns and victim context tied to interlock. The entry supports risk assessment and intelligence enrichment across relevant sectors and geographies. |
||||||
| Ransomware | Drive Products id32910 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector and is associated with Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, with interlock identified as the associated threat actor or source. The listing reflects the entity's classification within cybersecurity monitoring records rather than confirming specific technical details of any incident. This description provides neutral context for catalog users assessing entity risk, sector exposure, geographic origin, and threat-actor linkage. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32923 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its incident context tied to the threat actor interlock. This listing type indicates observed or attributed cybersecurity compromise activity associated with the organization and its environment. The description remains neutral and avoids speculation regarding specific intrusion methods, data handling, or remediation details. driveproducts.com serves as a reference point for threat actors, defenders, and analysts monitoring ransomware activity across retail and e-commerce environments. |
||||||
| Ransomware | Drive Products id32923 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is cataloged within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that driveproducts.com was identified in relation to a ransomware-related incident involving interlock, without disclosing specific technical or operational details. The catalog entry provides neutral context for threat analysts tracking retail and e-commerce entities affected by cyber incidents. It reflects the entity's sector, geographic location, and its association with the specified threat actor in the intelligence database. |
||||||
| Ransomware | Drive Products id32924 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, explicitly associated with threat actor interlock. This entry provides neutral context regarding the entity's sector, geographic location, and its documented relationship to the specified threat actor without disclosing unverified incident details such as data stolen, affected systems, or ransom demands. The description serves to inform security analysts and defenders of the entity's profile within the ransomware victim index. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector from Canada, providing digital commerce and product-related services to customers and business partners. The entity appears in threat-intelligence indexing under the designation ransomware victim, associated with the threat actor interlock. This listing reflects observed threat-intelligence classification rather than confirmed breach details, operational impact, or specific incident evidence. Catalog records for this entity emphasize its sector context and attacker association for analytical and defensive reference purposes. Neutral documentation supports threat-aware monitoring, risk assessment, and cybersecurity intelligence workflows across retail and e-commerce environments. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, based in Canada. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, associated with threat actor interlock. This listing type indicates observed or attributed ransomware activity connected to the entity, contributing to cybersecurity awareness for retail and e-commerce organizations facing similar threats. The description avoids speculation regarding data stolen, ransom demands, or confirmed breach details, maintaining factual neutrality. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, associated with the threat actor interlock. This designation reflects the intelligence assessment linking driveproducts.com to this actor within the ransomware incident context. No specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach specifics, are included per strict factual boundaries. The listing serves as a neutral reference point for threat-aware professionals monitoring retail and e-commerce environments against interlock-associated ransomware activity. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational ties to Canada. The entity is cataloged as a ransomware victim within this threat-intelligence index, associated with the threat actor interlock. This listing type indicates that the organization was impacted by ransomware activity linked to interlock, reflecting a cybersecurity incident within its sector. The description focuses on the entity's classification and contextual association without disclosing unverified technical details, breach specifics, or unconfirmed claims. This entry serves to inform threat analysts and security stakeholders of the entity's status and the attributed threat actor for monitoring and risk assessment purposes. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
DriveProducts.com operates within the Retail and E-commerce sector, with operational ties to Canada. The entity is cataloged within a threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects an observed cybersecurity event involving the organization, documented for analytical and defensive reference purposes. Details regarding specific compromise vectors, data exposure, or remediation actions remain intentionally non-speculative per cataloging protocols. The record serves to inform security practitioners and stakeholders about the entity's status and associated threat context. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the ransomware victim listing. The entity represents a business context where cyber incidents may impact retail operations, customer data workflows, and e-commerce infrastructure. This catalog entry provides neutral, authoritative context for threat-intelligence indexing, emphasizing sector relevance, geographic origin in Canada, and the specific ransomware victim classification tied to interlock. No incident specifics, breach confirmations, data details, or financial claims are included to maintain factual neutrality and analytical integrity. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically tied to the threat actor interlock. This listing type indicates that driveproducts.com was identified in relation to a ransomware incident associated with interlock's activity. The description focuses on the entity's sector, geographic context, listing classification, and associated threat actor without speculating on unconfirmed technical details, data exposure, or financial impact. It serves as a neutral reference point for threat-intelligence professionals monitoring retail and e-commerce environments. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with its identified country of origin as Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, associated with the threat actor interlock. This classification reflects the entity's inclusion in intelligence records concerning ransomware activity affecting organizations in this sector and geographic context. The description remains factual and neutral, focusing on the entity's sector profile, location, listing classification, and the attributed threat actor without asserting unverified incident details. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32968 View details | Canada | Retail / E-commerce | — | ||
|
DriveProducts.com is an entity operating within the Retail and E-commerce sector, located in Canada. The domain and associated organization are cataloged within the threat-intelligence index under the listing type ransomware victim. This classification reflects its documented association with threat actor interlock in cybersecurity intelligence records. The entry provides sector context, geographic location, and the nature of its inclusion without asserting unverified breach details such as stolen data, affected systems, or financial impact. DriveProducts.com serves as a reference point for analysts tracking ransomware activity in Canadian retail and e-commerce environments and correlating victim entities with identified threat actors. |
||||||
| Ransomware | Drive Products id33134 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, with interlock identified as the associated threat actor or source. Its inclusion reflects threat-intelligence analysis correlating the organization with interlock activity within cybersecurity monitoring frameworks. This description focuses on the entity's sector, geographic context, listing classification, and associated actor without asserting unverified breach details. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id18962 View details | Canada | IT | leaked | ||
|
Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM |
||||||
| Ransomware | Doman id32603 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the organization's association with this specific cyber threat activity within the indexed dataset. The description maintains neutrality regarding incident details, focusing solely on the entity's classification and its documented relationship to the identified threat actor. Such entries support threat analysts in tracking ransomware incidents and associated actors across sectors. |
||||||
| Ransomware | Doman id32603 View details | Canada | IT | — | ||
|
Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM |
||||||
| Ransomware | Doman id32709 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type identifies domanbm.com within incident records tied to malicious activity and associated adversary behavior. The description remains neutral and avoids speculation regarding specific compromise details, data handling, or operational impact. It serves to contextualize the entity within cyber threat intelligence for analysts tracking ransomware incidents and actor-associated victims. |
||||||
| Ransomware | Doman id32710 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The description reflects the entity's classification and contextual threat linkage without asserting unverified incident details such as data exfiltration scope, ransom demands, or specific breach confirmation. This entry supports threat-intelligence research by documenting the relationship between the organization, its sector profile, geographic context, and identified threat actor affiliation. |
||||||
| Ransomware | Doman id32710 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the threat actor interlock in the ransomware victim catalog. The entity represents a business organization whose exposure to this threat actor is documented within the threat-intelligence index. Catalog entries of this nature provide structured context regarding affected entities, geographic location, industry classification, and adversary attribution for security professionals and analysts. This listing serves as a reference point for monitoring ransomware activity and understanding organizational impacts tied to identified threat campaigns. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32711 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization whose infrastructure and services are cataloged within threat-intelligence frameworks. As a ransomware victim, domanbm.com appears in the threat-intelligence index associated with the threat actor interlock. This listing type documents its involvement within cybersecurity incident records, providing context for threat actors, defenders, and security analysts monitoring ransomware campaigns globally. The entry reflects its classification without disclosing unverified incident details. |
||||||
| Ransomware | Doman id32715 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the indexed classification without attributing confirmed breach details, data exfiltration specifics, or financial impact. This entry supports cyber-threat-intelligence analysis for tracking ransomware incidents across sectors and geographic regions. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32715 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization, providing digital solutions and services relevant to its industry. Within the threat-intelligence index, domanbm.com is cataloged specifically as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's documented association with this cybersecurity incident profile. The entry serves to inform analysts and defenders about the relationship between this organization and the identified threat actor. |
||||||
| Ransomware | Doman id32723 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization within this industry context, serving business clients and maintaining standard service-oriented operations. It has been documented within the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing reflects its status in cybersecurity threat reporting without disclosing specific incident details. The record serves to inform defenders and analysts about potential exposure vectors within the Services sector in Canadian contexts. |
||||||
| Ransomware | Doman id32725 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This listing reflects observed threat-intelligence data concerning the entity's involvement with this adversary group. The description remains factual and neutral, focusing on the entity's classification, sector, geographic context, and association without disclosing unverified incident details. It serves as a reference point for monitoring cyber threats in the technology sector. |
||||||
| Ransomware | Doman id32725 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the intelligence assessment of the entity's relationship to this specific cyber threat actor within the ransomware threat landscape. The entry provides context for threat researchers, security analysts, and defenders monitoring adversary activity and victim profiles. It neutrally states that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32726 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada. The entity appears in a threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This entry documents the relationship between domanbm.com and interlock within cybersecurity intelligence reporting. No specific incident details, breach confirmations, data losses, or ransom terms are asserted in this description. The listing serves as a neutral reference point for cataloging ransomware-related intelligence involving this organization and its attributed actor. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain functions as a business identifier within the information technology landscape, with catalog records categorizing it as a ransomware victim. This listing type reflects its documented association with the threat actor interlock within the threat-intelligence index framework. No specific incident details, such as stolen data types, record counts, ransom amounts, or confirmed breach specifics, are provided in this description to maintain factual neutrality. The entry serves as a verified reference point for security analysts tracking cyber threats and victim profiles. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that domanbm.com was identified within incident records tied to interlock's activity, providing context for defenders assessing exposure patterns in the technology sector. The description reflects the indexed classification without elaborating on unverified incident details, such as data exfiltration specifics or financial impact. Neutral treatment ensures the record remains authoritative and suitable for threat-intelligence consumption. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor within the ransomware incident dataset. The description adheres to neutral, encyclopedic standards, focusing on verified listing metadata without attributing unconfirmed incident details. The catalog entry serves threat analysts and security professionals seeking structured intelligence on ransomware victims and associated actors. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock within this ransomware victim catalog. The entity's location is Canada, reflecting its regional context within the indexed intelligence. As a ransomware victim listing, domanbm.com represents an organization documented in relation to this specific threat actor's activity and associated cyber incidents. This entry provides neutral catalog context for threat-intelligence researchers and defenders analyzing interlock-linked ransomware cases across sectors and geographies. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged within a threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to IT infrastructure. No specific incident details such as stolen data, ransom demands, or breach confirmation are included, maintaining factual neutrality. The listing serves as a reference point for threat-intelligence professionals assessing ransomware exposure and associated actor context. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com is an IT sector entity based in Canada, cataloged within a threat-intelligence index as a ransomware victim. The entity represents organizations within the technology sector that may have experienced cyber incidents involving unauthorized encryption or data access. Its inclusion reflects threat-intelligence analysis linking affected entities to specific actors, enhancing context for security teams monitoring ransomware campaigns. The listing type identifies domanbm.com as a ransomware victim associated with the threat actor interlock. This neutral documentation supports defenders in tracking adversary-targeted environments and sector-specific risk patterns without disclosing unconfirmed incident details. |
||||||
| Ransomware | Doman id32730 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an organization cataloged within a threat-intelligence index due to its association with the ransomware victim listing type linked to threat actor interlock. This entry documents the entity's contextual profile—including geographic origin, industry classification, and the specific threat-actor relationship—without disclosing unverified incident details such as data exfiltration scope, ransom demands, or confirmed breach specifics. The description maintains an authoritative, neutral stance suitable for cybersecurity professionals conducting threat-intelligence research and incident correlation. |
||||||
| Ransomware | Doman id32730 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain represents an organization whose infrastructure was impacted by a cyber incident cataloged under the ransomware victim listing type. This entry is associated with the threat actor interlock, reflecting intelligence linkage within the threat-intelligence index framework. The description focuses on the entity's classification and contextual threat association without disclosing unverified incident details. It serves as a reference point for security analysts tracking ransomware-related entities and affiliated threat actors across sectors and geographies. |
||||||
| Ransomware | Doman id32733 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is identified as a ransomware victim within the threat-intelligence index. The entity is associated with threat actor interlock, with its operational context noted as Canada. Catalog records describe the organization's sector, geographic location, and the nature of its inclusion as a ransomware victim linked to this specific threat actor. No incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics are included in this description. This entry neutrally documents the entity's classification and association for threat-intelligence indexing purposes. |
||||||
| Ransomware | Doman id32733 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the threat actor interlock in this ransomware victim index. The entity represents an organization whose security posture was impacted by an attack attributed to interlock, contributing contextual intelligence for threat analysts and defenders monitoring service-sector ransomware activity in Canada. This listing provides a factual record of the entity's classification without disclosing unconfirmed incident details such as data stolen, systems affected, or ransom demands. Understanding such victim profiles helps cybersecurity professionals identify targeting patterns, assess sector-specific risks, and strengthen defensive strategies against evolving ransomware campaigns. |
||||||
| Ransomware | Doman id32734 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the country Canada. The entity functions as a service provider, with its profile included in this threat-intelligence index under the designation of ransomware victim. The listing reflects its connection to threat actor interlock, a group documented in cyber threat intelligence databases. This entry provides neutral, factual context regarding the entity's sector, geographic location, and its classification within the ransomware victim category. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Doman id32734 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a cybersecurity incident reference point where threat intelligence platforms document victim profiles, sector context, geographic location, and adversary connections. Details regarding specific attack vectors, data exposure, or operational impact are intentionally not specified to maintain factual neutrality and avoid unverified claims. This entry supports security teams in mapping ransomware exposure within Canadian IT environments and identifying relevant adversary activity for monitoring and defense planning. |
||||||
| Ransomware | Doman id32735 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. The profile provides contextual information regarding the organization's sector, geographic location, and its classification within threat event records. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are included to maintain factual neutrality and avoid speculation. This entry serves to index the entity's association with the identified threat actor for cybersecurity monitoring and intelligence purposes. |
||||||
| Ransomware | Doman id32735 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the index classification only; no specific incident details such as data stolen, records accessed, ransom demands, or confirmed breach evidence are provided. This entry serves to document the relationship between the entity, its sector, location, and the threat actor for cybersecurity monitoring and intelligence purposes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32740 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its country of presence. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically tied to the threat actor interlock. This listing reflects the organization's documented exposure within the cybersecurity threat landscape. The description remains neutral and factual, focusing on the entity's classification, sector context, geographic origin, and the associated threat actor without speculating on incident details. It serves as a reference point for threat analysts tracking ransomware activity and linked actors. |
||||||
| Ransomware | Doman id32740 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects the organization's inclusion in intelligence records documenting cybersecurity incidents and adversary activity. No specific breach details, data loss metrics, ransom terms, or confirmed findings are provided here, in accordance with strict factual neutrality. The entry serves as a structured reference for threat-aware catalog users tracking ransomware victim profiles and actor associations. |
||||||
| Ransomware | Doman id32742 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector, located in Canada, and catalogued within a threat-intelligence index as a ransomware victim. The listing type identifies the entity in relation to a cyber incident linked to the threat actor interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, and association with the specified threat actor without extrapolating beyond verified intelligence. This entry supports threat-intelligence analysis for monitoring ransomware incidents and associated actor relationships in the technology sector. |
||||||
| Ransomware | Doman id32742 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity appears in a threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. Catalog entry provides neutral context regarding the entity's classification without asserting specific incident details, breach confirmations, data exfiltration specifics, or operational impact. This description serves to document the relationship between domanbm.com, its sector and location, its ransomware victim designation, and the interlock attribution within the intelligence framework. |
||||||
| Ransomware | Doman id32743 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects documented intelligence linking domanbm.com to this adversary group without disclosing confirmed technical details of any incident. The record serves as part of a structured catalog for monitoring threat actor activity and victim exposure across sectors and geographies. Neutral classification ensures transparency while respecting operational constraints and avoiding speculative claims about breach specifics. |
||||||
| Ransomware | Doman id32743 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in records documenting cybersecurity incidents and associated adversary activity. No specific incident details, such as data stolen, ransom demands, or confirmed breach evidence, are provided here to maintain factual neutrality and avoid speculation. The entry serves as a structured reference for threat analysts tracking ransomware-related entities and their connected actors. |
||||||
| Ransomware | Doman id32744 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization providing digital services or infrastructure aligned with information technology operations. It has been cataloged within a threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's association with this cybersecurity incident profile without disclosing unverified technical details or confirmed breach specifics. The entry serves to document the relationship between domanbm.com and the identified threat actor within public threat intelligence records. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the threat actor interlock. This listing type indicates that domanbm.com was identified as an affected organization in relation to malicious activity attributed to interlock. The description focuses on the entity's classification and contextual association without disclosing unverified incident details. Understanding this relationship supports threat-intelligence analysis for sector and geographic risk assessment. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented in this threat-intelligence index under the listing type ransomware victim. The association with threat actor interlock identifies the specific adversary group linked to this entry in the catalog. This description adheres to neutral, factual reporting standards without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. The entry serves to catalog the entity within the broader landscape of threat actor activity and victim impact tracking. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged as a ransomware victim within a threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects intelligence-based attribution concerning cybersecurity exposure and does not confirm specific breach details, data exfiltration, ransom demands, or operational impact. The description remains neutral, focusing on the entity's classification, sector, location, and linkage to the interlock actor for catalog and research purposes. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is based in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. The description focuses on the entity's classification and contextual threat association without disclosing unverified incident details. This entry supports cybersecurity professionals in tracking ransomware-related entities and associated actors across sectors and geographies. The listing reflects the observed relationship between domanbm.com and interlock within threat intelligence datasets. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is documented in this threat-intelligence index as a ransomware victim linked to threat actor interlock. This listing reflects the observed association between domanbm.com and interlock within cybersecurity incident records. No additional incident specifics, such as stolen data, ransom demands, or breach confirmation details, are included here to maintain factual neutrality and avoid speculation. The catalog entry serves to index the relationship for threat-intelligence analysis and awareness. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the Canadian jurisdiction. The entity is documented in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. Catalog entries of this nature provide threat analysts and security teams with contextual intelligence regarding compromised organizations, enabling informed risk assessment and defensive strategy development within the Services industry. This record reflects the indexed classification without disclosing unverified incident details. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. As a ransomware victim indexed by this threat-intelligence catalog, it represents an entity impacted by cyber activity linked to the interlock threat actor. The listing type identifies domanbm.com specifically as a ransomware victim within the associated intelligence record. This description maintains factual neutrality regarding the entity's role, sector, geographic context, and the attributed threat actor without inventing breach details, data scope, or financial impact. The catalog entry documents the relationship between domanbm.com and interlock as a ransomware victim. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The entity is specifically listed as a ransomware victim associated with threat actor interlock. This classification reflects the correlation between domanbm.com and interlock's activity, providing cybersecurity analysts with contextual intelligence regarding affected entities in the Services industry across North America. The entry serves to inform defenders and researchers about threat actor targeting patterns and victim profiles within this sector. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
DomanBM.com operates within the IT sector and is associated with the threat actor interlock in this threat-intelligence catalog. The entity represents a ransomware victim entry, reflecting observed threat activity targeting organizations in its sector and geographic region. Catalog entries of this nature support security teams in identifying exposure patterns, attacker campaigns, and potential indicators relevant to IT infrastructure protection. This listing neutrally documents that domanbm.com was identified as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a business providing technology-related services or infrastructure within its designated industry context. It has been formally cataloged within this threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's association with this actor within documented cyber incident records. The description remains neutral and factual regarding its categorization without speculating on unverified incident details. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity functions as a technology services provider, with its profile documented within a threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing type indicates its inclusion based on security event correlation and intelligence reporting. The description remains factual and neutral, focusing on the entity's sector, geographic context, and association without asserting unverified breach details. domanbm.com serves as a reference point for monitoring ransomware activity and threat actor influence within the IT landscape. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity serves as a catalog entry identifying a ransomware victim linked to the threat actor interlock in this threat-intelligence index. The listing type categorizes domanbm.com specifically as a ransomware victim, providing context for defenders assessing exposure and associated adversary activity. This description maintains neutrality regarding incident details, focusing solely on the verified association between the entity, its sector and location, and the attributed threat actor. No additional breach specifics, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as an organization within information technology infrastructure, serving relevant business and technical services. In the context of threat-intelligence indexing, domanbm.com has been categorized as a ransomware victim linked to the threat actor interlock. This classification reflects its inclusion in records documenting cybersecurity incidents and associated adversary activity. The description avoids speculative claims regarding breach details, data exposure, or operational impact, focusing solely on the verified listing context. |
||||||
| Ransomware | Doman id32751 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim indexed in this threat-intelligence catalog, the entity represents an organization affected by cyber malicious activity associated with the interlock threat actor. The listing type specifically identifies domanbm.com as a ransomware victim connected to interlock, providing context for threat analysts tracking adversary campaigns and impacted entities. This description maintains neutrality regarding incident details while accurately reflecting the entity's classification within the intelligence index. No additional breach specifics, disclosure dates, or unverified claims are included per strict factual guidelines. |
||||||
| Ransomware | Doman id32751 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim indexed in our threat-intelligence catalog, domanbm.com represents an entity impacted by cyber activity linked to the interlock threat actor. This listing type documents the association between the entity and the identified threat actor within our intelligence framework. The entry provides context for security professionals monitoring ransomware incidents across sectors and geographies. No specific incident details, such as stolen data, ransom demands, or confirmed breach metrics, are included to maintain factual neutrality. |
||||||
| Ransomware | Doman id32752 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is based in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates that domanbm.com was identified in relation to a ransomware-associated activity involving interlock. The description focuses strictly on the entity's classification within the index, its sector, geographic context, and its association with the specified threat actor. No additional incident details, such as breach confirmation or specific attack parameters, are included per strict factual guidelines. |
||||||
| Ransomware | Doman id32753 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity appears in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. Catalog records for this entity focus on its classification within cybersecurity threat reporting rather than disclosing specific incident details such as data stolen, ransom demands, or breach confirmation. This description maintains a neutral, authoritative tone consistent with premium threat-intelligence catalog documentation. The inclusion reflects verified indexing of the entity as an affected organization connected to interlock's ransomware activity. |
||||||
| Ransomware | Doman id32754 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with interlock within cybersecurity threat reporting frameworks. The description avoids speculative details regarding the incident itself, focusing solely on the verified classification of the entity as a ransomware victim connected to interlock. Contextual understanding of interlock and domanbm.com is provided within the scope of this threat-intelligence catalog entry. |
||||||
| Ransomware | Doman id32755 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim within this threat-intelligence index, linked to the threat actor interlock. The listing reflects observed intelligence concerning this organization's involvement with the identified cyber threat activity. This description maintains neutrality regarding specific incident details, as confirmed specifics are not provided in the available data. The entry documents the association between domanbm.com and interlock under the ransomware victim classification. |
||||||
| Ransomware | Doman id32755 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an entity cataloged in this threat-intelligence index under the designation of ransomware victim. The association with threat actor interlock indicates a documented relationship within cybersecurity threat reporting frameworks. This listing serves to inform analysts and defenders about potential attack vectors and contextual intelligence related to this entity. The entry remains factual and neutral, focusing solely on the verified linkage without extrapolating beyond confirmed intelligence. |
||||||
| Ransomware | Doman id32757 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity appears in this threat-intelligence index under the listing type ransomware victim, linked to threat actor interlock. This entry documents the association without disclosing unverified incident details, as specific breach confirmations, data impacts, or operational findings are not provided here. The catalog entry serves to index the relationship between domanbm.com, the interlock threat actor, and the ransomware victim classification for analytical and defensive reference purposes. |
||||||
| Ransomware | Doman id32758 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence records. The entity is cataloged as a ransomware victim, reflecting its inclusion in intelligence datasets tracking cyber incidents and adversary activity. Publicly available information does not confirm specific breach details, stolen data, ransom demands, or operational specifics beyond the classification and attribution provided by the index. This description maintains neutrality and relies solely on the entity profile, sector context, geographic location, listing type, and associated threat actor for catalog purposes. |
||||||
| Ransomware | Doman id32759 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization, providing digital services and infrastructure relevant to enterprise information systems. Within the threat-intelligence index, domanbm.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity records documenting adversary activity and affected targets. The catalog entry serves to inform defenders and analysts about connections between organizations and identified threat groups. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. The listing type identifies domanbm.com within incident records where interlock demonstrated activity targeting or affecting this organization. This description maintains factual neutrality regarding the nature of the threat event, avoiding speculation on stolen data, financial impact, or technical specifics. The entry serves to contextualize domanbm.com within broader cyber threat intelligence datasets for analysts monitoring ransomware campaigns and associated actors. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates a documented relationship between domanbm.com and interlock in threat intelligence records. The description avoids speculation regarding breach details, data exposure, or operational impact, focusing solely on the verified classification and contextual metadata provided by the index. Neutral treatment ensures factual accuracy while supporting security teams in monitoring actor-victim associations across sectors. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, with interlock identified as the associated threat actor or source. Catalog entries of this nature document observed adversary relationships and victim profiles for analytical reference within cybersecurity intelligence frameworks. This listing reflects the entity's classification without disclosing unverified incident details such as data exfiltration specifics, ransom terms, or confirmed breach metrics. The record serves to inform defenders and analysts about the connection between domanbm.com and the interlock threat actor profile. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is identified in this threat-intelligence index as a ransomware victim linked to the interlock threat actor. The entity is geographically associated with Canada. Catalog records for this listing emphasize its classification within cyber incident databases, highlighting the relationship between the affected organization and the identified threat actor interlock. This description maintains neutrality regarding unconfirmed incident details, focusing solely on the entity's categorization and associated threat intelligence context. The final classification states that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity functions as a business providing information technology services, infrastructure, or related technical solutions to clients or stakeholders within its domain. In the context of this threat-intelligence index, domanbm.com is cataloged specifically as a ransomware victim linked to the threat actor interlock. This classification reflects the entity's documented association with this adversary group within cybersecurity threat databases and incident repositories. The listing serves to inform analysts, defenders, and security teams about connections between organizations and active threat actors in the cyber threat landscape. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization providing service-oriented offerings, though specific service details are not publicly disclosed in available intelligence records. It is formally cataloged as a ransomware victim associated with threat actor interlock within this threat-intelligence index. This listing reflects the entity's status as an affected organization linked to this specific cyber threat actor profile. The description maintains neutrality regarding incident specifics, focusing solely on the entity's classification and associated threat attribution. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a domain identifier within threat-intelligence indexing frameworks, cataloging its association with the ransomware incident profile of threat actor interlock. This listing type denotes a ransomware victim within the cybersecurity threat landscape, reflecting the entity's documented relationship to this specific threat actor's activity. The description remains neutral, focusing solely on the verified association and sector context without extrapolating beyond confirmed intelligence. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32763 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This listing type indicates an assessed cybersecurity event involving potential ransomware activity targeting the organization. The description remains factual and neutral, reflecting the indexed association without confirming unverified incident details such as data exfiltration scope, ransom demands, or specific breach mechanics. Contextual understanding of domanbm.com is derived from its sector classification, geographic location, and the threat actor attribution provided in the intelligence record. |
||||||
| Ransomware | Doman id32763 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor or source interlock. This designation reflects its inclusion within intelligence records documenting cybersecurity incidents and attacker attribution. The description avoids speculative details regarding breach specifics, data exposure, or financial impact, maintaining a neutral and authoritative tone consistent with catalog standards. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32764 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain represents an organization whose security posture was assessed within a threat-intelligence index, cataloging it as a ransomware victim. This listing type indicates documented threat exposure linked to the interlock threat actor, providing cybersecurity professionals with contextual intelligence for risk assessment and incident correlation. The entry reflects verified intelligence concerning the entity's involvement with this specific threat actor profile, contributing to broader monitoring frameworks for IT infrastructure threats. Neutral documentation supports analytical workflows without asserting unconfirmed breach details. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the intelligence assessment linking domanbm.com to the interlock threat actor within the ransomware incident context. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics, are included to maintain factual neutrality. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records documenting ransomware-related incidents and attacker attribution. The description remains neutral, focusing on the verified association between domanbm.com and interlock within the ransomware victim classification. No additional incident details, such as breach specifics or disclosure timelines, are included beyond the official listing context. |
||||||