Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 74 | Onion service | Up checked 2h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 73 | Onion service | Up checked 2h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 2h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 2h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 2h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 68 | Onion service | Up checked 2h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 69 | Onion service | Up checked 2h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 67 | Onion service | Up checked 2h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 66 | Onion service | Up checked 2h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 65 | Onion service | Up checked 2h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 63 | Onion service | Up checked 2h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 2h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 2h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 60 | Onion service | Up checked 2h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 58 | Onion service | Up checked 2h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 56 | Onion service | Up checked 2h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 57 | Onion service | Up checked 2h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 55 | Onion service | Up checked 2h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 54 | Onion service | Up checked 2h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 2h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 43 | Onion service | Up checked 2h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 2h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 64 | Onion service | Down checked 2h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 59 | Onion service | Down checked 2h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 53 | Onion service | Down checked 2h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Down checked 2h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 48 | Onion service | Down checked 2h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 49 | Onion service | Down checked 2h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 2h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 46 | Onion service | Down checked 2h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 45 | Onion service | Down checked 2h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 44 | Onion service | Down checked 2h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 42 | Onion service | Down checked 2h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 2h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 39 | Onion service | Down checked 2h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 40 | Onion service | Down checked 2h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 38 | Onion service | Down checked 2h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 2h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 35 | Onion service | Down checked 2h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 36 | Onion service | Down checked 2h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 33 | Onion service | Down checked 2h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 34 | Onion service | Down checked 2h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 32 | Onion service | Down checked 2h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 2h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 29 | Onion service | Down checked 2h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 30 | Onion service | Down checked 2h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 28 | Onion service | Down checked 2h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 27 | Onion service | Down checked 2h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 26 | Onion service | Down checked 2h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 25 | Onion service | Down checked 2h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 24 | Onion service | Down checked 2h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 23 | Onion service | Down checked 2h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 22 | Onion service | Down checked 2h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 21 | Onion service | Down checked 2h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 20 | Onion service | Down checked 2h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 2h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 2h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 2h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 15 | Onion service | Down checked 2h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 16 | Onion service | Down checked 2h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 13 | Onion service | Down checked 2h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 2h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 11 | Onion service | Down checked 2h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 12 | Onion service | Down checked 2h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 10 | Onion service | Down checked 2h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 2h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 2h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 6 | Onion service | Down checked 2h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 7 | Onion service | Down checked 2h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 2h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 4 | Onion service | Down checked 2h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 2h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 20601–20700 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
DriveProducts.com operates within the Retail and E-commerce sector, with operational ties to Canada. The entity is cataloged within a threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects an observed cybersecurity event involving the organization, documented for analytical and defensive reference purposes. Details regarding specific compromise vectors, data exposure, or remediation actions remain intentionally non-speculative per cataloging protocols. The record serves to inform security practitioners and stakeholders about the entity's status and associated threat context. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the Retail and E-commerce sector and is associated with the threat actor interlock in the ransomware victim listing. The entity represents a business context where cyber incidents may impact retail operations, customer data workflows, and e-commerce infrastructure. This catalog entry provides neutral, authoritative context for threat-intelligence indexing, emphasizing sector relevance, geographic origin in Canada, and the specific ransomware victim classification tied to interlock. No incident specifics, breach confirmations, data details, or financial claims are included to maintain factual neutrality and analytical integrity. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational presence associated with Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically tied to the threat actor interlock. This listing type indicates that driveproducts.com was identified in relation to a ransomware incident associated with interlock's activity. The description focuses on the entity's sector, geographic context, listing classification, and associated threat actor without speculating on unconfirmed technical details, data exposure, or financial impact. It serves as a neutral reference point for threat-intelligence professionals monitoring retail and e-commerce environments. |
||||||
| Ransomware | Drive Products id32926 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with its identified country of origin as Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, associated with the threat actor interlock. This classification reflects the entity's inclusion in intelligence records concerning ransomware activity affecting organizations in this sector and geographic context. The description remains factual and neutral, focusing on the entity's sector profile, location, listing classification, and the attributed threat actor without asserting unverified incident details. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id32968 View details | Canada | Retail / E-commerce | — | ||
|
DriveProducts.com is an entity operating within the Retail and E-commerce sector, located in Canada. The domain and associated organization are cataloged within the threat-intelligence index under the listing type ransomware victim. This classification reflects its documented association with threat actor interlock in cybersecurity intelligence records. The entry provides sector context, geographic location, and the nature of its inclusion without asserting unverified breach details such as stolen data, affected systems, or financial impact. DriveProducts.com serves as a reference point for analysts tracking ransomware activity in Canadian retail and e-commerce environments and correlating victim entities with identified threat actors. |
||||||
| Ransomware | Drive Products id33134 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity is cataloged in the threat-intelligence index under the ransomware victim listing type, with interlock identified as the associated threat actor or source. Its inclusion reflects threat-intelligence analysis correlating the organization with interlock activity within cybersecurity monitoring frameworks. This description focuses on the entity's sector, geographic context, listing classification, and associated actor without asserting unverified breach details. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id33135 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector based in Canada. The entity functions as a commercial platform serving retail and online commerce activities, with its digital infrastructure potentially targeted by cyber threats. Within the threat-intelligence index, this listing type identifies driveproducts.com as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context documented for the entity, highlighting its exposure profile within the retail technology landscape without disclosing specific incident details. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with primary activity associated with Canada. The entity functions as a commercial service provider serving online commerce and retail workflows. In threat-intelligence indexing, driveproducts.com is categorized as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity intelligence records tied to interlock activity within the affected sector and geographic context. The description avoids speculative claims regarding specific incident details, data exposure, or financial impact. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with its associated operational context tied to Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, specifically associated with threat actor interlock. This listing reflects the cybersecurity posture and incident classification observed in aggregated threat-intelligence records. The description maintains neutrality regarding unconfirmed technical or operational details, focusing solely on the entity's sector, geographic association, listing classification, and threat actor linkage. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the Retail and E-commerce sector, with operational ties to Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. This listing reflects the organization's inclusion in cybersecurity records documenting ransomware-related incidents. The description adheres to neutral, encyclopedic standards without disclosing unverified technical details, breach specifics, or unconfirmed claims regarding data handling or attacker methodology. The association with interlock indicates the entity's presence in threat actor attribution datasets. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector and is associated with the threat actor interlock in threat-intelligence records. The entity represents a ransomware victim within the Canadian market, where retail and e-commerce organizations face persistent cyber threats targeting operational continuity and customer data. This listing type identifies driveproducts.com as an affected organization in the context of interlock activity, providing catalog context for security professionals monitoring retail sector risks. The description remains factual and neutral, reflecting the indexed ransomware victim status without alleging specific breach details, data exposure, or recovery outcomes. driveproducts.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational ties to Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The description reflects the entity's sector profile and its classification within the index without disclosing unverified incident details, breach specifics, or unconfirmed claims. This entry provides neutral context for threat-intelligence researchers and security professionals monitoring retail and e-commerce environments for correlated cyber activity. |
||||||
| Ransomware | Drive Products id33136 View details | Canada | Retail / E-commerce | — | ||
|
driveproducts.com operates within the retail and e-commerce sector, with operational ties to Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The description reflects the entity's sector profile and its classification within the index without disclosing unverified incident details, breach specifics, or unconfirmed claims. This entry provides neutral context for threat-intelligence researchers and security professionals monitoring retail and e-commerce environments for correlated cyber activity. |
||||||
| Ransomware | Drive Products id32933 View details | Canada | Retail / E-commerce | — | ||
|
DriveProducts.com operates within the retail and e-commerce sector based in Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. Catalog records contextualize the organization's sector, geographic location, and its confirmed association with this specific threat actor group for defensive analysis and risk assessment. This entry supports cybersecurity teams in identifying potential attack pathways and understanding contextual threat exposure within digital commerce environments. |
||||||
| Ransomware | Drive Products id32933 View details | Canada | Retail / E-commerce | — | ||
|
Drive Products offers a complete range of truck mounted equipment, products, services and solutions through a growing branch and partner network across Canada. Drive Products has continued to build on its diversification strategy centered around strong distribution, systems integration, upfitting and manufacturing capabilities. |
||||||
| Ransomware | Doman id18962 View details | Canada | IT | leaked | ||
|
Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM |
||||||
| Ransomware | Doman id32603 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the organization's association with this specific cyber threat activity within the indexed dataset. The description maintains neutrality regarding incident details, focusing solely on the entity's classification and its documented relationship to the identified threat actor. Such entries support threat analysts in tracking ransomware incidents and associated actors across sectors. |
||||||
| Ransomware | Doman id32603 View details | Canada | IT | — | ||
|
Doman Building Materials Group is a vertically integrated global building materials group. They supply products to retailers across North America. From basic lumber to next generation products, DOMAN optimizes the supply of a wide range of quality building materials. Headquartered in Vancouver, British Columbia, Canada, we operate distribution centers, wood processing plants, specialty sawmills, planers, wood cleaning facilities across North America and private forest lands. This distinctive vertical model allows us to maintain close relationships with the supply chain, ensuring retailers can purchase high-quality products at highly competitive prices. Doman Building Materials Group Ltd. is traded on the Toronto Stock Exchange under the symbol DBM |
||||||
| Ransomware | Doman id32709 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type identifies domanbm.com within incident records tied to malicious activity and associated adversary behavior. The description remains neutral and avoids speculation regarding specific compromise details, data handling, or operational impact. It serves to contextualize the entity within cyber threat intelligence for analysts tracking ransomware incidents and actor-associated victims. |
||||||
| Ransomware | Doman id32710 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The description reflects the entity's classification and contextual threat linkage without asserting unverified incident details such as data exfiltration scope, ransom demands, or specific breach confirmation. This entry supports threat-intelligence research by documenting the relationship between the organization, its sector profile, geographic context, and identified threat actor affiliation. |
||||||
| Ransomware | Doman id32710 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the threat actor interlock in the ransomware victim catalog. The entity represents a business organization whose exposure to this threat actor is documented within the threat-intelligence index. Catalog entries of this nature provide structured context regarding affected entities, geographic location, industry classification, and adversary attribution for security professionals and analysts. This listing serves as a reference point for monitoring ransomware activity and understanding organizational impacts tied to identified threat campaigns. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32711 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization whose infrastructure and services are cataloged within threat-intelligence frameworks. As a ransomware victim, domanbm.com appears in the threat-intelligence index associated with the threat actor interlock. This listing type documents its involvement within cybersecurity incident records, providing context for threat actors, defenders, and security analysts monitoring ransomware campaigns globally. The entry reflects its classification without disclosing unverified incident details. |
||||||
| Ransomware | Doman id32715 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the indexed classification without attributing confirmed breach details, data exfiltration specifics, or financial impact. This entry supports cyber-threat-intelligence analysis for tracking ransomware incidents across sectors and geographic regions. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32715 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization, providing digital solutions and services relevant to its industry. Within the threat-intelligence index, domanbm.com is cataloged specifically as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's documented association with this cybersecurity incident profile. The entry serves to inform analysts and defenders about the relationship between this organization and the identified threat actor. |
||||||
| Ransomware | Doman id32723 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization within this industry context, serving business clients and maintaining standard service-oriented operations. It has been documented within the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing reflects its status in cybersecurity threat reporting without disclosing specific incident details. The record serves to inform defenders and analysts about potential exposure vectors within the Services sector in Canadian contexts. |
||||||
| Ransomware | Doman id32725 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This listing reflects observed threat-intelligence data concerning the entity's involvement with this adversary group. The description remains factual and neutral, focusing on the entity's classification, sector, geographic context, and association without disclosing unverified incident details. It serves as a reference point for monitoring cyber threats in the technology sector. |
||||||
| Ransomware | Doman id32725 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the intelligence assessment of the entity's relationship to this specific cyber threat actor within the ransomware threat landscape. The entry provides context for threat researchers, security analysts, and defenders monitoring adversary activity and victim profiles. It neutrally states that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32726 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada. The entity appears in a threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This entry documents the relationship between domanbm.com and interlock within cybersecurity intelligence reporting. No specific incident details, breach confirmations, data losses, or ransom terms are asserted in this description. The listing serves as a neutral reference point for cataloging ransomware-related intelligence involving this organization and its attributed actor. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain functions as a business identifier within the information technology landscape, with catalog records categorizing it as a ransomware victim. This listing type reflects its documented association with the threat actor interlock within the threat-intelligence index framework. No specific incident details, such as stolen data types, record counts, ransom amounts, or confirmed breach specifics, are provided in this description to maintain factual neutrality. The entry serves as a verified reference point for security analysts tracking cyber threats and victim profiles. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that domanbm.com was identified within incident records tied to interlock's activity, providing context for defenders assessing exposure patterns in the technology sector. The description reflects the indexed classification without elaborating on unverified incident details, such as data exfiltration specifics or financial impact. Neutral treatment ensures the record remains authoritative and suitable for threat-intelligence consumption. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor within the ransomware incident dataset. The description adheres to neutral, encyclopedic standards, focusing on verified listing metadata without attributing unconfirmed incident details. The catalog entry serves threat analysts and security professionals seeking structured intelligence on ransomware victims and associated actors. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock within this ransomware victim catalog. The entity's location is Canada, reflecting its regional context within the indexed intelligence. As a ransomware victim listing, domanbm.com represents an organization documented in relation to this specific threat actor's activity and associated cyber incidents. This entry provides neutral catalog context for threat-intelligence researchers and defenders analyzing interlock-linked ransomware cases across sectors and geographies. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity is cataloged within a threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cybersecurity incidents and adversary activity relevant to IT infrastructure. No specific incident details such as stolen data, ransom demands, or breach confirmation are included, maintaining factual neutrality. The listing serves as a reference point for threat-intelligence professionals assessing ransomware exposure and associated actor context. |
||||||
| Ransomware | Doman id32729 View details | Canada | IT | — | ||
|
domanbm.com is an IT sector entity based in Canada, cataloged within a threat-intelligence index as a ransomware victim. The entity represents organizations within the technology sector that may have experienced cyber incidents involving unauthorized encryption or data access. Its inclusion reflects threat-intelligence analysis linking affected entities to specific actors, enhancing context for security teams monitoring ransomware campaigns. The listing type identifies domanbm.com as a ransomware victim associated with the threat actor interlock. This neutral documentation supports defenders in tracking adversary-targeted environments and sector-specific risk patterns without disclosing unconfirmed incident details. |
||||||
| Ransomware | Doman id32730 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an organization cataloged within a threat-intelligence index due to its association with the ransomware victim listing type linked to threat actor interlock. This entry documents the entity's contextual profile—including geographic origin, industry classification, and the specific threat-actor relationship—without disclosing unverified incident details such as data exfiltration scope, ransom demands, or confirmed breach specifics. The description maintains an authoritative, neutral stance suitable for cybersecurity professionals conducting threat-intelligence research and incident correlation. |
||||||
| Ransomware | Doman id32730 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain represents an organization whose infrastructure was impacted by a cyber incident cataloged under the ransomware victim listing type. This entry is associated with the threat actor interlock, reflecting intelligence linkage within the threat-intelligence index framework. The description focuses on the entity's classification and contextual threat association without disclosing unverified incident details. It serves as a reference point for security analysts tracking ransomware-related entities and affiliated threat actors across sectors and geographies. |
||||||
| Ransomware | Doman id32733 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is identified as a ransomware victim within the threat-intelligence index. The entity is associated with threat actor interlock, with its operational context noted as Canada. Catalog records describe the organization's sector, geographic location, and the nature of its inclusion as a ransomware victim linked to this specific threat actor. No incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics are included in this description. This entry neutrally documents the entity's classification and association for threat-intelligence indexing purposes. |
||||||
| Ransomware | Doman id32733 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the threat actor interlock in this ransomware victim index. The entity represents an organization whose security posture was impacted by an attack attributed to interlock, contributing contextual intelligence for threat analysts and defenders monitoring service-sector ransomware activity in Canada. This listing provides a factual record of the entity's classification without disclosing unconfirmed incident details such as data stolen, systems affected, or ransom demands. Understanding such victim profiles helps cybersecurity professionals identify targeting patterns, assess sector-specific risks, and strengthen defensive strategies against evolving ransomware campaigns. |
||||||
| Ransomware | Doman id32734 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the country Canada. The entity functions as a service provider, with its profile included in this threat-intelligence index under the designation of ransomware victim. The listing reflects its connection to threat actor interlock, a group documented in cyber threat intelligence databases. This entry provides neutral, factual context regarding the entity's sector, geographic location, and its classification within the ransomware victim category. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Doman id32734 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a cybersecurity incident reference point where threat intelligence platforms document victim profiles, sector context, geographic location, and adversary connections. Details regarding specific attack vectors, data exposure, or operational impact are intentionally not specified to maintain factual neutrality and avoid unverified claims. This entry supports security teams in mapping ransomware exposure within Canadian IT environments and identifying relevant adversary activity for monitoring and defense planning. |
||||||
| Ransomware | Doman id32735 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is documented within this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. The profile provides contextual information regarding the organization's sector, geographic location, and its classification within threat event records. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach evidence, are included to maintain factual neutrality and avoid speculation. This entry serves to index the entity's association with the identified threat actor for cybersecurity monitoring and intelligence purposes. |
||||||
| Ransomware | Doman id32735 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the index classification only; no specific incident details such as data stolen, records accessed, ransom demands, or confirmed breach evidence are provided. This entry serves to document the relationship between the entity, its sector, location, and the threat actor for cybersecurity monitoring and intelligence purposes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32740 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its country of presence. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically tied to the threat actor interlock. This listing reflects the organization's documented exposure within the cybersecurity threat landscape. The description remains neutral and factual, focusing on the entity's classification, sector context, geographic origin, and the associated threat actor without speculating on incident details. It serves as a reference point for threat analysts tracking ransomware activity and linked actors. |
||||||
| Ransomware | Doman id32740 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada. The entity is cataloged as a ransomware victim in the threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects the organization's inclusion in intelligence records documenting cybersecurity incidents and adversary activity. No specific breach details, data loss metrics, ransom terms, or confirmed findings are provided here, in accordance with strict factual neutrality. The entry serves as a structured reference for threat-aware catalog users tracking ransomware victim profiles and actor associations. |
||||||
| Ransomware | Doman id32742 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector, located in Canada, and catalogued within a threat-intelligence index as a ransomware victim. The listing type identifies the entity in relation to a cyber incident linked to the threat actor interlock. The description remains factual and neutral, focusing on the entity's sector, geographic context, and association with the specified threat actor without extrapolating beyond verified intelligence. This entry supports threat-intelligence analysis for monitoring ransomware incidents and associated actor relationships in the technology sector. |
||||||
| Ransomware | Doman id32742 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity appears in a threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. Catalog entry provides neutral context regarding the entity's classification without asserting specific incident details, breach confirmations, data exfiltration specifics, or operational impact. This description serves to document the relationship between domanbm.com, its sector and location, its ransomware victim designation, and the interlock attribution within the intelligence framework. |
||||||
| Ransomware | Doman id32743 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects documented intelligence linking domanbm.com to this adversary group without disclosing confirmed technical details of any incident. The record serves as part of a structured catalog for monitoring threat actor activity and victim exposure across sectors and geographies. Neutral classification ensures transparency while respecting operational constraints and avoiding speculative claims about breach specifics. |
||||||
| Ransomware | Doman id32743 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in records documenting cybersecurity incidents and associated adversary activity. No specific incident details, such as data stolen, ransom demands, or confirmed breach evidence, are provided here to maintain factual neutrality and avoid speculation. The entry serves as a structured reference for threat analysts tracking ransomware-related entities and their connected actors. |
||||||
| Ransomware | Doman id32744 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization providing digital services or infrastructure aligned with information technology operations. It has been cataloged within a threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's association with this cybersecurity incident profile without disclosing unverified technical details or confirmed breach specifics. The entry serves to document the relationship between domanbm.com and the identified threat actor within public threat intelligence records. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically linked to the threat actor interlock. This listing type indicates that domanbm.com was identified as an affected organization in relation to malicious activity attributed to interlock. The description focuses on the entity's classification and contextual association without disclosing unverified incident details. Understanding this relationship supports threat-intelligence analysis for sector and geographic risk assessment. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented in this threat-intelligence index under the listing type ransomware victim. The association with threat actor interlock identifies the specific adversary group linked to this entry in the catalog. This description adheres to neutral, factual reporting standards without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. The entry serves to catalog the entity within the broader landscape of threat actor activity and victim impact tracking. |
||||||
| Ransomware | Doman id32748 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged as a ransomware victim within a threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects intelligence-based attribution concerning cybersecurity exposure and does not confirm specific breach details, data exfiltration, ransom demands, or operational impact. The description remains neutral, focusing on the entity's classification, sector, location, and linkage to the interlock actor for catalog and research purposes. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is based in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. The description focuses on the entity's classification and contextual threat association without disclosing unverified incident details. This entry supports cybersecurity professionals in tracking ransomware-related entities and associated actors across sectors and geographies. The listing reflects the observed relationship between domanbm.com and interlock within threat intelligence datasets. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is documented in this threat-intelligence index as a ransomware victim linked to threat actor interlock. This listing reflects the observed association between domanbm.com and interlock within cybersecurity incident records. No additional incident specifics, such as stolen data, ransom demands, or breach confirmation details, are included here to maintain factual neutrality and avoid speculation. The catalog entry serves to index the relationship for threat-intelligence analysis and awareness. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is associated with the Canadian jurisdiction. The entity is documented in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. Catalog entries of this nature provide threat analysts and security teams with contextual intelligence regarding compromised organizations, enabling informed risk assessment and defensive strategy development within the Services industry. This record reflects the indexed classification without disclosing unverified incident details. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. As a ransomware victim indexed by this threat-intelligence catalog, it represents an entity impacted by cyber activity linked to the interlock threat actor. The listing type identifies domanbm.com specifically as a ransomware victim within the associated intelligence record. This description maintains factual neutrality regarding the entity's role, sector, geographic context, and the attributed threat actor without inventing breach details, data scope, or financial impact. The catalog entry documents the relationship between domanbm.com and interlock as a ransomware victim. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The domain represents an organization whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The entity is specifically listed as a ransomware victim associated with threat actor interlock. This classification reflects the correlation between domanbm.com and interlock's activity, providing cybersecurity analysts with contextual intelligence regarding affected entities in the Services industry across North America. The entry serves to inform defenders and researchers about threat actor targeting patterns and victim profiles within this sector. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
DomanBM.com operates within the IT sector and is associated with the threat actor interlock in this threat-intelligence catalog. The entity represents a ransomware victim entry, reflecting observed threat activity targeting organizations in its sector and geographic region. Catalog entries of this nature support security teams in identifying exposure patterns, attacker campaigns, and potential indicators relevant to IT infrastructure protection. This listing neutrally documents that domanbm.com was identified as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a business providing technology-related services or infrastructure within its designated industry context. It has been formally cataloged within this threat-intelligence index under the classification of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's association with this actor within documented cyber incident records. The description remains neutral and factual regarding its categorization without speculating on unverified incident details. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is headquartered in Canada. The entity functions as a technology services provider, with its profile documented within a threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing type indicates its inclusion based on security event correlation and intelligence reporting. The description remains factual and neutral, focusing on the entity's sector, geographic context, and association without asserting unverified breach details. domanbm.com serves as a reference point for monitoring ransomware activity and threat actor influence within the IT landscape. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The entity serves as a catalog entry identifying a ransomware victim linked to the threat actor interlock in this threat-intelligence index. The listing type categorizes domanbm.com specifically as a ransomware victim, providing context for defenders assessing exposure and associated adversary activity. This description maintains neutrality regarding incident details, focusing solely on the verified association between the entity, its sector and location, and the attributed threat actor. No additional breach specifics, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Doman id32750 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as an organization within information technology infrastructure, serving relevant business and technical services. In the context of threat-intelligence indexing, domanbm.com has been categorized as a ransomware victim linked to the threat actor interlock. This classification reflects its inclusion in records documenting cybersecurity incidents and associated adversary activity. The description avoids speculative claims regarding breach details, data exposure, or operational impact, focusing solely on the verified listing context. |
||||||
| Ransomware | Doman id32751 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim indexed in this threat-intelligence catalog, the entity represents an organization affected by cyber malicious activity associated with the interlock threat actor. The listing type specifically identifies domanbm.com as a ransomware victim connected to interlock, providing context for threat analysts tracking adversary campaigns and impacted entities. This description maintains neutrality regarding incident details while accurately reflecting the entity's classification within the intelligence index. No additional breach specifics, disclosure dates, or unverified claims are included per strict factual guidelines. |
||||||
| Ransomware | Doman id32751 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim indexed in our threat-intelligence catalog, domanbm.com represents an entity impacted by cyber activity linked to the interlock threat actor. This listing type documents the association between the entity and the identified threat actor within our intelligence framework. The entry provides context for security professionals monitoring ransomware incidents across sectors and geographies. No specific incident details, such as stolen data, ransom demands, or confirmed breach metrics, are included to maintain factual neutrality. |
||||||
| Ransomware | Doman id32752 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is based in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates that domanbm.com was identified in relation to a ransomware-associated activity involving interlock. The description focuses strictly on the entity's classification within the index, its sector, geographic context, and its association with the specified threat actor. No additional incident details, such as breach confirmation or specific attack parameters, are included per strict factual guidelines. |
||||||
| Ransomware | Doman id32753 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity appears in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. Catalog records for this entity focus on its classification within cybersecurity threat reporting rather than disclosing specific incident details such as data stolen, ransom demands, or breach confirmation. This description maintains a neutral, authoritative tone consistent with premium threat-intelligence catalog documentation. The inclusion reflects verified indexing of the entity as an affected organization connected to interlock's ransomware activity. |
||||||
| Ransomware | Doman id32754 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's association with interlock within cybersecurity threat reporting frameworks. The description avoids speculative details regarding the incident itself, focusing solely on the verified classification of the entity as a ransomware victim connected to interlock. Contextual understanding of interlock and domanbm.com is provided within the scope of this threat-intelligence catalog entry. |
||||||
| Ransomware | Doman id32755 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity is cataloged as a ransomware victim within this threat-intelligence index, linked to the threat actor interlock. The listing reflects observed intelligence concerning this organization's involvement with the identified cyber threat activity. This description maintains neutrality regarding specific incident details, as confirmed specifics are not provided in the available data. The entry documents the association between domanbm.com and interlock under the ransomware victim classification. |
||||||
| Ransomware | Doman id32755 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an entity cataloged in this threat-intelligence index under the designation of ransomware victim. The association with threat actor interlock indicates a documented relationship within cybersecurity threat reporting frameworks. This listing serves to inform analysts and defenders about potential attack vectors and contextual intelligence related to this entity. The entry remains factual and neutral, focusing solely on the verified linkage without extrapolating beyond confirmed intelligence. |
||||||
| Ransomware | Doman id32757 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity appears in this threat-intelligence index under the listing type ransomware victim, linked to threat actor interlock. This entry documents the association without disclosing unverified incident details, as specific breach confirmations, data impacts, or operational findings are not provided here. The catalog entry serves to index the relationship between domanbm.com, the interlock threat actor, and the ransomware victim classification for analytical and defensive reference purposes. |
||||||
| Ransomware | Doman id32758 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence records. The entity is cataloged as a ransomware victim, reflecting its inclusion in intelligence datasets tracking cyber incidents and adversary activity. Publicly available information does not confirm specific breach details, stolen data, ransom demands, or operational specifics beyond the classification and attribution provided by the index. This description maintains neutrality and relies solely on the entity profile, sector context, geographic location, listing type, and associated threat actor for catalog purposes. |
||||||
| Ransomware | Doman id32759 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a technology-focused organization, providing digital services and infrastructure relevant to enterprise information systems. Within the threat-intelligence index, domanbm.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in cybersecurity records documenting adversary activity and affected targets. The catalog entry serves to inform defenders and analysts about connections between organizations and identified threat groups. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. The listing type identifies domanbm.com within incident records where interlock demonstrated activity targeting or affecting this organization. This description maintains factual neutrality regarding the nature of the threat event, avoiding speculation on stolen data, financial impact, or technical specifics. The entry serves to contextualize domanbm.com within broader cyber threat intelligence datasets for analysts monitoring ransomware campaigns and associated actors. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates a documented relationship between domanbm.com and interlock in threat intelligence records. The description avoids speculation regarding breach details, data exposure, or operational impact, focusing solely on the verified classification and contextual metadata provided by the index. Neutral treatment ensures factual accuracy while supporting security teams in monitoring actor-victim associations across sectors. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, with interlock identified as the associated threat actor or source. Catalog entries of this nature document observed adversary relationships and victim profiles for analytical reference within cybersecurity intelligence frameworks. This listing reflects the entity's classification without disclosing unverified incident details such as data exfiltration specifics, ransom terms, or confirmed breach metrics. The record serves to inform defenders and analysts about the connection between domanbm.com and the interlock threat actor profile. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is identified in this threat-intelligence index as a ransomware victim linked to the interlock threat actor. The entity is geographically associated with Canada. Catalog records for this listing emphasize its classification within cyber incident databases, highlighting the relationship between the affected organization and the identified threat actor interlock. This description maintains neutrality regarding unconfirmed incident details, focusing solely on the entity's categorization and associated threat intelligence context. The final classification states that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is located in Canada. The entity functions as a business providing information technology services, infrastructure, or related technical solutions to clients or stakeholders within its domain. In the context of this threat-intelligence index, domanbm.com is cataloged specifically as a ransomware victim linked to the threat actor interlock. This classification reflects the entity's documented association with this adversary group within cybersecurity threat databases and incident repositories. The listing serves to inform analysts, defenders, and security teams about connections between organizations and active threat actors in the cyber threat landscape. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is headquartered in Canada. The entity functions as a commercial organization providing service-oriented offerings, though specific service details are not publicly disclosed in available intelligence records. It is formally cataloged as a ransomware victim associated with threat actor interlock within this threat-intelligence index. This listing reflects the entity's status as an affected organization linked to this specific cyber threat actor profile. The description maintains neutrality regarding incident specifics, focusing solely on the entity's classification and associated threat attribution. |
||||||
| Ransomware | Doman id32762 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity functions as a domain identifier within threat-intelligence indexing frameworks, cataloging its association with the ransomware incident profile of threat actor interlock. This listing type denotes a ransomware victim within the cybersecurity threat landscape, reflecting the entity's documented relationship to this specific threat actor's activity. The description remains neutral, focusing solely on the verified association and sector context without extrapolating beyond confirmed intelligence. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32763 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged as a ransomware victim within the threat-intelligence index, specifically linked to the threat actor interlock. This listing type indicates an assessed cybersecurity event involving potential ransomware activity targeting the organization. The description remains factual and neutral, reflecting the indexed association without confirming unverified incident details such as data exfiltration scope, ransom demands, or specific breach mechanics. Contextual understanding of domanbm.com is derived from its sector classification, geographic location, and the threat actor attribution provided in the intelligence record. |
||||||
| Ransomware | Doman id32763 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor or source interlock. This designation reflects its inclusion within intelligence records documenting cybersecurity incidents and attacker attribution. The description avoids speculative details regarding breach specifics, data exposure, or financial impact, maintaining a neutral and authoritative tone consistent with catalog standards. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32764 View details | Canada | IT | — | ||
|
domanbm.com is an entity operating within the IT sector based in Canada. The domain represents an organization whose security posture was assessed within a threat-intelligence index, cataloging it as a ransomware victim. This listing type indicates documented threat exposure linked to the interlock threat actor, providing cybersecurity professionals with contextual intelligence for risk assessment and incident correlation. The entry reflects verified intelligence concerning the entity's involvement with this specific threat actor profile, contributing to broader monitoring frameworks for IT infrastructure threats. Neutral documentation supports analytical workflows without asserting unconfirmed breach details. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the intelligence assessment linking domanbm.com to the interlock threat actor within the ransomware incident context. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics, are included to maintain factual neutrality. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records documenting ransomware-related incidents and attacker attribution. The description remains neutral, focusing on the verified association between domanbm.com and interlock within the ransomware victim classification. No additional incident details, such as breach specifics or disclosure timelines, are included beyond the official listing context. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity is cataloged as a ransomware victim in the threat-intelligence index, with interlock identified as the associated threat actor or source. This listing reflects observed intelligence linking domanbm.com to ransomware activity involving interlock, without disclosing confirmed incident details such as stolen data, ransom terms, or specific breach metrics. The description remains neutral and factual, focusing on the entity’s sector, location, listing classification, and threat-actor association. |
||||||
| Ransomware | Doman id32766 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an entity cataloged as a ransomware victim within a threat-intelligence index. Its association with the threat actor interlock indicates a cybersecurity incident context documented in professional threat-intelligence databases. This listing type reflects verified intelligence concerning compromised infrastructure or organizational exposure. The description remains factual and neutral, focusing on the entity's classification, geographic context, sector, and linked threat actor without speculating on unconfirmed technical details or breach specifics. |
||||||
| Ransomware | Doman id32767 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its geographic context. The entity appears in the threat-intelligence index under the designation ransomware victim, with interlock identified as the associated threat actor or source. Catalog records for this entity focus on its classification within cyber threat intelligence rather than disclosing unverified incident details. This description maintains neutrality regarding specific attack mechanisms, data exposure, or operational impact. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32767 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing reflects the organization's inclusion in cybersecurity threat datasets concerning ransomware activity. The description remains neutral regarding specific incident details, as confirmed specifics such as breach scope or data exposure are not publicly verified for this entity. The association with interlock identifies the threat actor context under which domanbm.com was recorded. |
||||||
| Ransomware | Doman id32767 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. This listing reflects observed intelligence concerning the organization's exposure within a cyber threat context. The description avoids speculative details regarding breach specifics, data handling, or financial impact. It serves as a structured reference point for security analysts monitoring actor activity and victim profiles across sectors and geographies. |
||||||
| Ransomware | Doman id32767 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada as its location. The domain is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically tied to the threat actor interlock. The entry provides context on the entity's sector, geographic scope, and its documented relationship to this cyber threat actor without disclosing unverified incident details. This neutral record supports threat-intelligence research, incident tracking, and defensive awareness for organizations monitoring ransomware activity in IT environments. |
||||||
| Ransomware | Doman id32771 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the entity's inclusion in intelligence records linking its profile to interlock's activity within cybersecurity threat analysis. The description maintains neutrality regarding specific incident details, as confirmed specifics such as data stolen, records affected, or ransom demands are not provided here. Understanding domanbm.com within this context supports threat-aware decision-making for security professionals monitoring ransomware-related entities and actors. |
||||||
| Ransomware | Doman id32774 View details | Canada | IT | — | ||
|
domanbm.com operates within the Services sector and is based in Canada. The domain represents an organization identified in threat-intelligence records as a ransomware victim. This listing associates the entity with threat actor interlock, indicating a cybersecurity incident of concern within the indexed intelligence database. The description adheres to neutral reporting standards, focusing on the entity's classification, geographic context, sector classification, and the verified association with the specified threat actor without disclosing unconfirmed incident details. This entry supports comprehensive threat-intelligence cataloging for security professionals monitoring ransomware activity across sectors and regions. |
||||||
| Ransomware | Doman id32776 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is identified from its domain and contextual profile as an entity located in Canada. As part of this threat-intelligence index, it is cataloged as a ransomware victim linked to the threat actor interlock. The listing type indicates exposure to ransomware activity under the attributed source, providing structured context for analysts tracking cyber incidents across sectors and geographies. This description relies on verified index metadata and avoids speculation regarding breach details, affected systems, data handling practices, or operational impact. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32780 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock within a threat-intelligence index catalog. The entity represents a ransomware victim classification, reflecting cybersecurity incident attribution relevant to monitoring digital threats and attacker campaigns. Publicly available details for domanbm.com remain limited, and no specific breach confirmation, stolen data scope, ransom terms, or operational impact can be stated without verified official disclosure. Its inclusion underscores the importance of tracking ransomware victim profiles alongside attributed threat actors to support threat intelligence analysis and risk awareness across IT environments. domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32782 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence records. The entity, located in Canada, is cataloged specifically as a ransomware victim within this intelligence index. Its inclusion reflects verified threat-intelligence analysis connecting the domain or organization to interlock's activity patterns and ransomware-related incidents. This description adheres to neutral, authoritative reporting standards for catalog entries, focusing on sector, geographic context, listing classification, and associated actor without extrapolating unconfirmed technical or operational details. The final classification remains that domanbm.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32787 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. As a ransomware victim entry in this threat-intelligence index, it is documented with its associated threat actor interlock. The listing type identifies the entity as having experienced ransomware activity linked to this specific adversary group. This catalog entry provides neutral, factual context regarding the organization's sector, geographic location, and its association with interlock within cybersecurity threat reporting frameworks. No incident specifics such as data stolen, ransom demands, or breach confirmation details are included per strict analytical guidelines. |
||||||
| Ransomware | Doman id32788 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the indexed classification without asserting unverified details regarding attack mechanisms, data exfiltration, or financial impact. This entry serves to document the relationship between domanbm.com and interlock within the ransomware victim category for analytical and defensive reference. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Doman id32789 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged within this threat-intelligence index under the designation ransomware victim. Its inclusion reflects an association with threat actor interlock, a group documented in cyber threat intelligence contexts. This listing provides neutral, factual context for security professionals monitoring ransomware activity across sectors and geographies. No specific incident details, such as data stolen, records compromised, ransom demands, or confirmed breach metrics, are provided here to maintain factual integrity and avoid speculation. |
||||||
| Ransomware | Doman id32790 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is associated with Canada. The entity is cataloged as a ransomware victim in threat-intelligence indexing, with interlock identified as the associated threat actor or source. This listing reflects cybersecurity intelligence observations concerning the organization's exposure to ransomware activity without disclosing confirmed incident details, data specifics, or operational impact. The description remains neutral and factual, focusing on the entity's sector, geographic context, listing classification, and threat-actor association. |
||||||
| Ransomware | Doman id32811 View details | Canada | IT | — | ||
|
domanbm.com operates within the IT sector and is situated in Canada. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. Catalog descriptions for ransomware victims focus on entity identification, sector context, geographic location, and associated threat intelligence attribution without disclosing unverified incident details such as stolen data, ransom terms, or confirmed breach specifics. This listing provides neutral, authoritative reference information for analysts tracking cyber incidents and threat actor activity across IT environments. |
||||||