Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 73 | Onion service | Up checked 1h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 1h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 1h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 1h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 1h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 1h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 1h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 1h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 1h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 1h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 60 | Onion service | Up checked 1h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 63 | Onion service | Up checked 1h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 1h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 1h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 1h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 1h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 57 | Onion service | Up checked 1h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 1h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 1h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 53 | Onion service | Up checked 1h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 1h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 1h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 1h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 1h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 74 | Onion service | Down checked 1h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 56 | Onion service | Down checked 1h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Down checked 1h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 49 | Onion service | Down checked 1h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 1h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 48 | Onion service | Down checked 1h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 44 | Onion service | Down checked 1h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 1h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 42 | Onion service | Down checked 1h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 1h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 1h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 39 | Onion service | Down checked 1h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 38 | Onion service | Down checked 1h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 1h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 1h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 1h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 1h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 1h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 1h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 1h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 1h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 1h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 27 | Onion service | Down checked 1h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 1h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 25 | Onion service | Down checked 1h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 26 | Onion service | Down checked 1h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 23 | Onion service | Down checked 1h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 24 | Onion service | Down checked 1h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 21 | Onion service | Down checked 1h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 1h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 1h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 1h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 1h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 1h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 1h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 1h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 1h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 1h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 1h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 1h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 1h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 1h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 1h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 1h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 1h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 1h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 1h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 1h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 2001–2100 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Converting Equipment International id32807 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is associated with the threat actor interlock in threat-intelligence catalogs. The entity represents a ransomware victim listing, reflecting cybersecurity intelligence observations concerning its exposure to malicious activity within the technology sector. This description is provided neutrally based on indexed threat-intelligence data, without confirming specific breach details, data theft, or operational impact. The inclusion reflects the established association between slitandrewind.com and interlock under the ransomware victim classification. |
||||||
| Ransomware | Converting Equipment International id32808 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector based in the United States and provides technology-focused services or infrastructure. It is cataloged in this threat-intelligence index under the designation of ransomware victim, with the associated threat actor or source identified as interlock. The listing reflects observed threat-related activity linking slitandrewind.win.com to the interlock actor profile. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are included to maintain factual neutrality. This entry serves to document the entity's relationship to the ransomware threat context as defined by the index. |
||||||
| Ransomware | Converting Equipment International id32809 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and serves as a catalog entry identifying the entity as a ransomware victim associated with the threat actor interlock. The listing type indicates that this organization was documented within our threat-intelligence index due to its connection to this specific cyber threat actor. This entry provides context for threat analysts tracking ransomware incidents across sectors and geographic regions, emphasizing the importance of monitoring entities linked to identified malicious actors. The description remains factual and neutral, focusing solely on the categorization within the intelligence index without elaborating on unverified incident details. |
||||||
| Ransomware | Converting Equipment International id32812 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions to clients. In the context of this threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion within cybersecurity threat records documenting adversary activity and victim profiles. The listing serves to inform security analysts, incident responders, and stakeholders about connections between entities and identified threat actors in the digital threat landscape. |
||||||
| Ransomware | Converting Equipment International id32813 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is situated in the United States. The entity functions as a technology-focused organization providing services aligned with its sector, though specific operational details are limited in public threat-intelligence records. It has been cataloged in this threat-intelligence index under the designation of ransomware victim, with the associated threat actor identified as interlock. This listing reflects its inclusion within cybersecurity threat databases for monitoring and risk assessment purposes. The description remains neutral and factual, focused on the entity's categorization and contextual threat association without disclosing unverified incident details. |
||||||
| Ransomware | Converting Equipment International id32813 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is associated with the threat-intelligence index listing type ransomware victim. The entity is tied to threat actor interlock, with operational context identified as the United States. The listing reflects cybersecurity intelligence assessment rather than confirmed breach details, preserving neutrality regarding specific attack mechanics, data exposure, or financial impact. This catalog entry documents the relationship between slitandrewind.com and interlock within ransomware victim indexing frameworks. It serves as a reference point for monitoring entity exposure and threat actor attribution in IT sector threat landscapes. |
||||||
| Ransomware | Converting Equipment International id32813 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects an association between the organization and this specific cyber threat actor within the ransomware incident landscape. No additional incident details, such as data stolen, records compromised, ransom demands, or confirmed breach specifics, are provided here to maintain factual neutrality and avoid speculation. This entry serves as a structured reference point for threat analysts tracking ransomware-related entities and their associated actors. |
||||||
| Ransomware | Converting Equipment International id32813 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is identified in the threat-intelligence index as a ransomware victim linked to the interlock threat actor. The entity represents an organization subject to cybersecurity incident analysis and cataloging. This listing reflects the association between slitandrewind.com and interlock within the ransomware victim classification framework. Details regarding specific attack vectors, data handling practices, or confirmed breach outcomes are not included to maintain factual neutrality and avoid unsupported claims. |
||||||
| Ransomware | Converting Equipment International id32813 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions. As cataloged in this threat-intelligence index, the entity is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity threat databases where incident relationships and actor attributions are documented for analytical purposes. The entry serves to inform stakeholders about entity exposure within the broader landscape of cyber incidents targeting IT environments. Neutral documentation ensures transparency without amplifying unverified claims regarding specific attack vectors or operational impacts. |
||||||
| Ransomware | Converting Equipment International id32815 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is associated with the US. The entity is cataloged in this threat-intelligence index as a ransomware victim connected to the threat actor interlock. The listing reflects the entity's inclusion in cybersecurity intelligence records documenting ransomware-related activity. No additional incident specifics, such as data stolen, records accessed, ransom demands, or confirmed breach details, are provided here to maintain factual neutrality and avoid speculation. This entry supports threat-aware monitoring and contextual understanding of ransomware incidents within digital infrastructure sectors. |
||||||
| Ransomware | Converting Equipment International id32815 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is associated with the threat actor interlock under this ransomware victim listing. The entity represents a company subject to cyber threat indexing, with contextual details reflecting its geographic origin in the United States and industry classification. This catalog entry documents the relationship between slitandrewind.com and interlock as a ransomware victim within the threat-intelligence framework. No specific incident details, breach confirmations, data claims, or financial terms are included, maintaining strict neutrality and factual restraint per catalog standards. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and serves as a subject within a threat-intelligence index catalog. The entity is documented as a ransomware victim linked to the threat actor interlock, reflecting cybersecurity intelligence context for monitoring and defense purposes. This listing type indicates an association with ransomware activity, providing analysts with categorical threat data tied to the organization's geographic and sectoral profile. The description remains neutral, focusing solely on the verified index classification without elaborating on unconfirmed incident details or operational specifics. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is associated with the threat actor Interlock in this ransomware victim listing. The entity represents a target profile identified within cyber threat intelligence coverage. Details regarding specific incident mechanics, data exposure, or operational impact are not disclosed in this catalog entry to maintain factual neutrality. This listing reflects the relationship between the entity, the threat actor Interlock, and the ransomware classification within the index. The inclusion underscores ongoing monitoring of IT sector entities linked to active cyber threats. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions. The entity is cataloged in the threat-intelligence index with the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion within security records documenting cyber incidents and adversary activity. The description avoids speculative details regarding breach specifics, data exposure, or financial impact, maintaining strict neutrality and factual accuracy consistent with threat-intelligence catalog standards. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing digital services or infrastructure relevant to enterprise technology environments. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The catalog entry reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details such as breach confirmation, stolen data, or financial impact. This description maintains a neutral, encyclopedic tone consistent with premium threat-intelligence catalog documentation for cybersecurity professionals and defenders. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com is an IT-sector entity based in the United States. The domain operates within the technology sector and is cataloged in this threat-intelligence index under the listing type ransomware victim. Its association with the threat actor interlock identifies the source connected to its inclusion in this ransomware victim classification. This entry provides neutral, factual context for researchers, defenders, and catalog consumers analyzing entity exposure, sector relevance, geographic location, and threat-actor linkage without asserting unconfirmed breach details or operational specifics. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is associated with the threat actor interlock within this ransomware victim listing. The entity represents a target identified in threat-intelligence analysis concerning cybersecurity incidents affecting information technology organizations in the United States. This catalog entry documents the relationship between slitandrewind.com and interlock as a ransomware victim, providing context for security researchers and defenders monitoring active threat campaigns. The description remains factual and neutral, focusing solely on the indexed association without elaborating on unverified incident specifics such as data exposure scope or operational impact. Such listings support comprehensive threat-intelligence frameworks by cataloging victim profiles and adversary connections across sectors. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and serves organizations requiring technology infrastructure and digital services. In the threat-intelligence index, this entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects observed threat activity or attribution context relevant to cybersecurity monitoring and intelligence aggregation. No specific incident details, such as data stolen, ransom demands, or breach confirmation, are included per strict factual constraints. This entry documents the entity's classification for catalog and analytical purposes. |
||||||
| Ransomware | Converting Equipment International id32816 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions to clients. This entity is cataloged in the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. The listing reflects intelligence assessment linking this organization to malicious activity within cybersecurity monitoring frameworks. Details regarding specific incident mechanics, data compromises, or operational impacts remain outside the scope of this neutral catalog description. This entry serves to document the relationship between slitandrewind.com and interlock within the ransomware victim classification. |
||||||
| Ransomware | Converting Equipment International id32817 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions relevant to enterprise infrastructure and digital operations. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. This designation reflects its inclusion within records documenting cybersecurity incidents involving malicious actors targeting IT-sector organizations. The listing serves to inform stakeholders about exposure profiles and associated threat intelligence without disclosing unverified incident details. Neutral documentation emphasizes the entity's sector, geographic context, and the specific threat actor association for analytical and defensive reference purposes. |
||||||
| Ransomware | Converting Equipment International id32822 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing digital services and solutions relevant to enterprise technology environments. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects intelligence gathered regarding the entity's involvement in a ransomware-related incident attributed to interlock. The description maintains neutrality regarding specific incident details, as confirmed specifics such as data scope or operational impact are not publicly attributable to the entity in official disclosures. The entry serves to document the relationship between slitandrewind.com and the identified threat actor within the broader cybersecurity threat landscape. |
||||||
| Ransomware | Converting Equipment International id32835 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. The description reflects the index's role in mapping victim organizations to active cyber threats without disclosing unverified incident details such as stolen data, breach scope, or ransom terms. This entry supports security teams in monitoring adversary campaigns and understanding ransomware exposure patterns across technology sectors. slitandrewind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id32835 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is associated with the threat actor interlock in the threat-intelligence index under the ransomware victim classification. The entity represents a monitored organization relevant to cybersecurity threat tracking, reflecting exposure within digital infrastructure contexts where ransomware activity is assessed. Its inclusion emphasizes the importance of tracking victim profiles, sector-specific vulnerabilities, and actor-associated incidents for defenders and analysts. This listing contributes structured intelligence for identifying patterns, assessing risks, and supporting proactive defense strategies across affected environments. The designation remains neutral, documenting the association without asserting unverified breach details or operational specifics. |
||||||
| Ransomware | Converting Equipment International id32836 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States. The entity is cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to this specific cyber threat activity. The description remains neutral regarding incident details, as confirmed specifics such as data scope or operational impact are not publicly attributable to the entity in official disclosures. The inclusion underscores ongoing monitoring of ransomware-related incidents within targeted IT environments. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged within a threat-intelligence index under the designation ransomware victim, linked to the associated threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cybersecurity incidents involving ransomware activity. No specific incident details such as data stolen, ransom demands, or breach confirmation are provided here, maintaining neutrality and factual restraint. The entry serves as a reference point for threat analysts monitoring ransomware-related entities and their associated actors. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and infrastructure. It is documented within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records concerning ransomware activity linked to interlock, contributing to broader threat awareness and defensive intelligence. The description remains factual and neutral, focusing on the entity's categorization and associated threat context without disclosing unverified incident details. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. The description focuses on the entity's classification and contextual association without disclosing unverified incident details. This entry provides structured intelligence for security professionals monitoring ransomware activity across IT environments. slitandrewind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is located in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects an incident where interlock was identified as the associated source or actor, contributing to the entity's classification within ransomware victim records. This description relies solely on the provided entity attributes and the association with interlock, avoiding speculation about breach details. The catalog entry serves to document the relationship between the organization, its sector and geographic location, and the confirmed threat actor attribution. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged within this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. The profile provides contextual information regarding the entity's sector, geographic location, and its classification within cybersecurity incident records. No specific incident details, such as data stolen, record counts, ransom demands, or confirmed breach specifics, are included per strict factual constraints. This entry documents the relationship between slitandrewind.com and the interlock threat actor within the ransomware victim classification. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector based in the United States and provides technology-focused services. It is cataloged in this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing reflects the entity's association with this specific cyber threat actor within the ransomware incident landscape. No additional incident details, such as data stolen or ransom demands, are specified in this catalog entry. This description adheres to neutral, authoritative reporting standards for threat-intelligence indexing. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents an organization whose security posture was impacted by this threat actor, as indexed within the threat-intelligence catalog. Catalog entries for ransomware victims provide context on affected entities, associated actors, geographic locations, and sector classifications for threat analysis and defense planning. This listing reflects the relationship between slitandrewind.com and interlock without disclosing unverified incident details. The metadata supports researchers and defenders in tracking ransomware activity across sectors and jurisdictions. |
||||||
| Ransomware | Converting Equipment International id32838 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a target profile within cyber threat intelligence indexing, reflecting observed connections between the organization and interlock activity. Catalog entries of this type support security teams in tracking adversary-targeted environments, sector exposure, and incident context without disclosing unverified breach details. This description maintains a neutral, encyclopedic stance consistent with premium threat-intelligence catalog standards. The listing type identifies slitandrewind.com as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id32854 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is associated with the threat actor interlock in this ransomware victim listing. The entity represents a case documented within the threat-intelligence index, reflecting cybersecurity exposure relevant to organizations in information technology. Details regarding specific attack vectors, data handling practices, or confirmed breach outcomes are intentionally not elaborated here to maintain factual neutrality and avoid speculative claims. This entry serves as a reference point for analysts monitoring ransomware activity and threat actor behavior across sectors and geographies. The listing type identifies slitandrewind.com as a ransomware victim connected to interlock. |
||||||
| Ransomware | Converting Equipment International id33046 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and serves as a catalog entry representing an organization identified as a ransomware victim within the threat-intelligence index. The entity is associated with the threat actor interlock, with operational context noted as United States. This listing reflects the entity's inclusion based on threat-intelligence analysis rather than confirmed incident details. The description maintains neutrality regarding specific attack mechanics, data exposure, or financial impact. Slitandrewind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id33047 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged within the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing reflects the entity's association with this specific cyber threat profile, based on aggregated intelligence sources. No additional incident details, such as data stolen, ransom demands, or confirmed breach specifics, are provided here to maintain factual neutrality and avoid speculation. The entry serves to document this relationship for cybersecurity professionals monitoring targeted organizations. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing relevant digital services and infrastructure. As documented in this threat-intelligence index, the entity is cataloged as a ransomware victim linked to the interlock threat actor. This listing reflects the cybersecurity event classification without disclosing specific technical findings, data details, or operational impact. The entry serves to inform stakeholders of associated threat exposure within the indexed ecosystem. All descriptions remain neutral and factual regarding the entity's classification and contextual threat association. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is situated in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, with interlock identified as the associated threat actor or source. This designation reflects the organization's inclusion in records documenting cybersecurity incidents linked to interlock's activity. The description remains factual and neutral, avoiding speculation regarding specific attack vectors, data handled, or operational impact. slitandrewind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector and is based in the United States. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its inclusion within intelligence records documenting cybersecurity incidents involving ransomware activity. The description maintains a neutral, encyclopedic tone regarding the entity's classification and associated threat context. slitandrewind.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and solutions. The entity is cataloged within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity community's documented relationship between the organization and the identified threat actor. The description remains factual and neutral, focusing on the entity's classification and its connection to the specified ransomware incident without elaborating on unconfirmed technical details or incident specifics. This entry supports threat-resilience analysis and awareness for security teams monitoring IT sector vulnerabilities. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and digital solutions to clients and stakeholders. The entity appears in the threat-intelligence index under the listing type ransomware victim, with an associated threat actor or source identified as interlock. This designation reflects its inclusion in records documenting cybersecurity incidents where ransomware activity was observed or attributed. The description remains neutral, avoiding speculation regarding breach specifics such as data stolen, affected systems, or financial impact. Its classification supports threat analysts, security teams, and defenders in tracking adversary-related victim profiles across sectors and geographies. |
||||||
| Ransomware | Converting Equipment International id33048 View details | United States | IT | pending | ||
|
Slitandrewind.com operates within the IT sector based in the United States, providing technology-focused services and digital solutions to clients and stakeholders. The entity appears in the threat-intelligence index under the listing type ransomware victim, with an associated threat actor or source identified as interlock. This designation reflects its inclusion in records documenting cybersecurity incidents where ransomware activity was observed or attributed. The description remains neutral, avoiding speculation regarding breach specifics such as data stolen, affected systems, or financial impact. Its classification supports threat analysts, security teams, and defenders in tracking adversary-related victim profiles across sectors and geographies. |
||||||
| Ransomware | Converting Equipment International id32845 View details | United States | IT | pending | ||
|
slitandrewind.com operates within the IT sector based in the United States, providing digital services and infrastructure relevant to enterprise technology environments. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. This classification reflects its inclusion in cybersecurity records documenting ransomware-related incidents and attacker attribution. The description adheres to neutral, encyclopedic standards without speculating on unconfirmed breach details, operational specifics, or unverified claims regarding the incident. The listing serves to inform defenders and analysts about entities impacted by identified threat actors in targeted sectors. |
||||||
| Ransomware | Converting Equipment International id32845 View details | United States | IT | pending | ||
|
CEI's mission is to produce high-quality equipment for the manufacturing industry through innovation, collaboration, and integrity. However, the company has a history of neglecting its own security, putting its customers and employees at risk. This negligence has resulted in the leakage of confidential information and personal data. We provide confidential information regarding equipment development, contracts, and customer relationships. We also have information about their subsidiaries and their entire financial structure. |
||||||
| Ransomware | Borger ISD id30464 View details | United States | Other | pending | ||
|
Borgerisd net is an entity based in the United States, operating in the other sector. The entity provides various services, but specific details about its offerings are not readily available. Borgerisd net was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id30464 View details | United States | Other | pending | ||
|
Borger Independent School District serves approximately 2,500 students on six campuses in Hutchinson County, Texas. The district fails to foster a collaborative environment for students, parents, and the community. They are not responsible or committed to ensuring the security of your data. This is not the first time they have neglected their students, with confidential information about staff, students, and their parents, as well as all incidents, the district's financial situation, and other information they concealed, leaking online. We offer you 330 GB of this information. |
||||||
| Ransomware | Borger ISD id32515 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the IT sector based in the United States. It is cataloged in the threat-intelligence index specifically as a ransomware victim linked to the interlock threat actor. The entity's presence in this listing type indicates its association with cyber incidents involving ransomware activity, contextualized within the IT sector and US geographic footprint. This description reflects the indexed classification without elaborating on unconfirmed incident specifics. The final classification neutrally states that borgerisd.net was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32515 View details | United States | Other | pending | ||
|
Borger Independent School District serves approximately 2,500 students on six campuses in Hutchinson County, Texas. The district fails to foster a collaborative environment for students, parents, and the community. They are not responsible or committed to ensuring the security of your data. This is not the first time they have neglected their students, with confidential information about staff, students, and their parents, as well as all incidents, the district's financial situation, and other information they concealed, leaking online. We offer you 330 GB of this information. |
||||||
| Ransomware | Borger ISD id32621 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with an entity operating within the technology sector based in the United States. The domain is cataloged within a threat-intelligence index under the listing type ransomware victim, explicitly associated with the threat actor interlock. This classification reflects intelligence assessments compiled by cybersecurity analysts tracking adversary activity and victim infrastructure. The entry provides structured context for threat researchers and security professionals monitoring indicators tied to interlock-affiliated campaigns. The final assessment neutrally confirms that borgerisd.net was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32622 View details | United States | Other | pending | ||
|
borgerisd.net is a domain operating within the Other sector and associated with the United States. As cataloged in this threat-intelligence index, it is designated as a ransomware victim entity. The listing connects this domain to the threat actor interlock, providing contextual intelligence for security professionals monitoring ransomware campaigns and associated infrastructure. This description reflects the indexed classification without asserting unverified incident details such as breach confirmation, stolen data, or operational specifics. The entry serves to document the entity's relationship to interlock within the ransomware victim category for analytical and defensive reference. |
||||||
| Ransomware | Borger ISD id32622 View details | United States | Other | pending | ||
|
borgerisd.net is an entity cataloged as a ransomware victim within a threat-intelligence index. The domain name suggests a business entity operating in the technology or digital services sector, with operational presence indicated in the United States. Specific operational details, including precise sector classification, service offerings, or confirmed incident specifics, remain limited in publicly available threat-intelligence records to avoid speculation. This listing type identifies the entity as having been impacted by ransomware activity associated with the interlock threat actor. The entry serves as a reference point for analysts tracking cyber incidents, threat actor attribution, and victim exposure patterns in digital infrastructure. |
||||||
| Ransomware | Borger ISD id32623 View details | United States | Other | pending | ||
|
borgerisd.net is a domain associated with a ransomware incident within the cybersecurity threat intelligence landscape. Operating from the United States, the entity represents a victim profile documented in a threat-intelligence index under the ransomware victim listing type. Its inclusion reflects observed connections to the threat actor interlock, which has been identified in related cyber threat analyses. The catalog entry provides neutral context regarding the entity's classification without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This description serves to inform analysts tracking ransomware activity and associated threat actors across global sectors. |
||||||
| Ransomware | Borger ISD id32627 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the United States. While specific operational details, sector classifications, and precise offerings remain limited in publicly available threat-intelligence records, the domain serves as a reference point within cybersecurity monitoring frameworks. The listing explicitly categorizes borgerisd.net under ransomware victim status, linking it to the threat actor interlock, which has been documented in cyber threat intelligence databases. This classification supports analysts tracking adversary activity, victim infrastructure, and regional incident patterns. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32627 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. The entity operates within the technology and cybersecurity sector, serving as a reference point within the threat-intelligence index for monitoring adversary activity and victim impact. Its inclusion reflects verified linkage to the threat actor interlock, highlighting the operational footprint of this actor in the digital threat landscape. This entry provides neutral catalog context regarding the entity's classification and associated threat profile without disclosing unconfirmed incident specifics. The listing type identifies borgerisd.net as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32635 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector, located in the United States. As a ransomware victim, it has been cataloged within a threat-intelligence index to document its association with the threat actor interlock. This listing type identifies the entity's connection to malicious activity targeting digital infrastructure. The description remains factual and neutral, focusing on the entity's classification and its documented relationship with the specified threat actor without disclosing unconfirmed incident details. Such indexing supports cybersecurity professionals in tracking adversary networks and understanding sector-specific risks. |
||||||
| Ransomware | Borger ISD id32637 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the United States. The entity represents a specific organization or service infrastructure referenced in threat-intelligence indexing, where its inclusion reflects observed security-incident correlations. Its classification as a ransomware victim indicates documented linkage to malicious activity involving encryption-based cyber threats. The associated threat actor interlock contextualizes the operational profile and attack methodology tied to this entity within the intelligence dataset. This entry provides factual catalog information without speculating on unverified incident details, maintaining strict neutrality and encyclopedic authority. |
||||||
| Ransomware | Borger ISD id32637 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. Publicly available intelligence sources categorize this entity within threat-intelligence indexes, noting its operational context and sector relevance to cybersecurity monitoring. The listing type specifically identifies it as a ransomware victim linked to the threat actor interlock. This designation reflects the entity's presence in incident databases compiled by cyber threat analysts for risk assessment and defensive awareness. The description remains neutral regarding unconfirmed incident details, focusing solely on its catalog classification and associated threat actor attribution. |
||||||
| Ransomware | Borger ISD id32638 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim entity based in the United States. The domain name suggests a business or service entity within a specific sector, though specific operational details, services, or precise sector classifications are not publicly verifiable without official disclosure. Within the threat-intelligence index, this entry documents the relationship between borgerisd.net and the interlock threat actor, reflecting observed or reported malicious activity targeting this entity. The listing type explicitly identifies it as a ransomware victim associated with interlock. This entry serves as a reference point for cybersecurity professionals monitoring threat actor campaigns, victim infrastructure, and regional incident patterns. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
borgerisd.net is a domain associated with the ransomware victim listing type within a threat-intelligence index. Operating within the US cybersecurity sector, the entity represents an organization impacted by malicious activity linked to the threat actor interlock. The listing type identifies borgerisd.net specifically as a ransomware victim, contextualizing its role within broader cyber threat intelligence frameworks and adversary attribution efforts. This description maintains neutrality regarding unconfirmed incident specifics while accurately reflecting the entity's classification and associated threat actor. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the IT sector based in the United States. It is cataloged as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. The entity's specific operational details, infrastructure, or confirmed incident specifics remain outside verified public disclosures and are not elaborated here to maintain neutrality and accuracy. This listing reflects its classification in relation to the identified threat actor and sector context. The entry serves to document the relationship between the entity, its sector location, and the attributed ransomware threat actor interlock within the intelligence framework. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector, located in the United States. It is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The entity's specific operational details, infrastructure, or incident specifics remain outside verified public disclosures in this listing. This entry serves to contextualize the relationship between the domain/entity and the identified threat actor within cybersecurity intelligence frameworks. The classification reflects the observed association without confirming unverified breach details. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
borgerisd.net is a domain registered within the Other sector and associated with the United States. It functions as an entity within the threat-intelligence catalog, specifically categorized as a ransomware victim. The listing connects this domain to the threat actor interlock, indicating a cybersecurity context where such domains may appear in incident reports or intelligence aggregations. This description provides neutral, encyclopedic context regarding the entity's classification and associated threat profile without speculating on unconfirmed incident details. The entry reflects the indexed relationship between borgerisd.net and interlock as a ransomware victim. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
Borgerisd.net is cataloged as a ransomware victim entity within the Other sector, operating from the United States. The domain and associated infrastructure are indexed within threat-intelligence frameworks to support threat actor analysis and incident correlation. This listing type identifies the entity's relationship to the threat actor interlock, providing contextual data for security professionals monitoring cyber threats across sectors and geographies. The description remains neutral and factual, focusing solely on the entity's classification and association without attributing confirmed breach details or unverified claims. This entry supports comprehensive threat intelligence indexing for defense and risk assessment purposes. |
||||||
| Ransomware | Borger ISD id32641 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector and located in the United States. It is cataloged in the threat-intelligence index as a ransomware victim linked to the interlock threat actor. This listing type indicates documented adversary association relevant to cybersecurity monitoring and incident analysis. The entity's specific operational details, infrastructure, or incident specifics remain outside verified public disclosures. Its inclusion underscores ongoing vigilance for sectors exposed to ransomware campaigns. This entry serves as a neutral reference point within the threat-intelligence ecosystem for tracking adversary-victim relationships and sector-based risk patterns. |
||||||
| Ransomware | Borger ISD id32642 View details | United States | Other | pending | ||
|
borgerisd.net is an entity within the Other sector located in the United States. As classified in this threat-intelligence index, it is documented as a ransomware victim associated with the threat actor interlock. The entity's specific operational profile, infrastructure details, and incident specifics remain limited within this listing; no additional breach claims, data theft specifics, or financial impact details are provided here. This entry serves to catalog the relationship between the domain/entity and the identified threat actor for analytical and defensive reference. The classification reflects verified intelligence linking borgerisd.net to interlock under the ransomware victim designation. |
||||||
| Ransomware | Borger ISD id32642 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the IT sector based in the United States. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The entity serves as a reference point for monitoring cyber incidents within digital infrastructure sectors. This listing reflects assessed threat exposure without disclosing specific breach details, operational impacts, or unverified claims. The inclusion emphasizes the relationship between the entity and the identified threat actor for cybersecurity awareness and defensive intelligence purposes. |
||||||
| Ransomware | Borger ISD id32645 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim listing within a threat-intelligence index. The entity operates within the technology sector and is situated in the United States, reflecting its geographic and operational context. As a ransomware victim linked to the threat actor interlock, borgerisd.net represents an instance where cyber threats impacted organizational systems. This entry documents the association neutrally without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. The listing type categorizes the entity specifically as a ransomware victim tied to interlock, providing structured intelligence for security professionals monitoring active threat campaigns. |
||||||
| Ransomware | Borger ISD id32645 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. The entity operates within the digital services sector, providing online infrastructure or related operational services. Within the threat-intelligence index, borgerisd.net is cataloged as a ransomware victim linked to the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity records documenting malicious activity and associated incident profiles. The description remains neutral, focusing on verified index attributes without speculating on unconfirmed breach details. |
||||||
| Ransomware | Borger ISD id32646 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. The entity operates within a sector not explicitly documented in available intelligence sources, though its inclusion in the threat-intelligence index classifies it under ransomware victim listings. This entry reflects observed threat-actor attribution to interlock, a source tracked in cyber threat analysis for associated malicious activity. The catalog entry provides neutral context for researchers and defenders monitoring entities linked to this threat actor. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32646 View details | United States | Other | pending | ||
|
borgerisd.net is an entity within the US Other sector cataloged in a threat-intelligence index under the ransomware victim listing type. The domain name suggests a digital service or organization operating in the broader Other sector classification. As a ransomware victim associated with the threat actor interlock, this entry documents the entity's presence within cybersecurity threat intelligence records. The listing reflects an assessed relationship between the entity and the identified threat actor without disclosing specific incident details, operational data, or confirmed breach specifics. This neutral catalog description serves to inform threat analysts and security professionals about the entity's classification within the ransomware threat landscape. |
||||||
| Ransomware | Borger ISD id32647 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware incident within the United States. The entity operates within a specific sector context relevant to enterprise and infrastructure security monitoring. As cataloged in the threat-intelligence index, borgerisd.net is classified as a ransomware victim listing tied to the threat actor interlock. This entry provides neutral context for analysts tracking adversary-linked victim domains and correlated infrastructure exposure. No unverified incident details, data claims, or confirmed breach specifics are included in this description. |
||||||
| Ransomware | Borger ISD id32647 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector and located in the United States. It is cataloged in the threat-intelligence index specifically as a ransomware victim linked to the threat actor interlock. Publicly available information does not confirm specific incident details, victim data, or operational specifics beyond its classification and associated actor. This listing serves to document the entity's presence within cybersecurity threat monitoring frameworks. The designation reflects its status as a reported target category tied to interlock activity. |
||||||
| Ransomware | Borger ISD id32652 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector and located in the United States. As cataloged in this threat-intelligence index, it is classified as a ransomware victim linked to the threat actor interlock. The entry provides contextual intelligence regarding this organization's association with malicious activity, supporting security analysts and defenders in understanding potential attack patterns and victim profiles. No specific incident details such as data stolen, records compromised, ransom demands, or confirmed breach timelines are included, adhering to strict factual boundaries. This neutral description serves to inform stakeholders about the entity's presence and associated threat context within the ransomware victim classification. |
||||||
| Ransomware | Borger ISD id32652 View details | United States | Other | pending | ||
|
borgerisd.net is a domain associated with a ransomware incident within the cybersecurity sector, operating from the United States. As cataloged in the threat-intelligence index under the listing type ransomware victim, it reflects an entity impacted by malicious activity tied to the interlock threat actor. The entity's specific operational sector and offerings are not publicly detailed in verified official disclosures; therefore, this description relies solely on its classification and geographic origin. This entry provides neutral context for analysts tracking ransomware campaigns and associated victim profiles. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32654 View details | United States | Other | pending | ||
|
borgerisd.net is a domain associated with the US cybersecurity sector and cataloged as a ransomware victim within a threat-intelligence index. The entity reflects infrastructure potentially impacted by malicious activity linked to the interlock threat actor group. This listing type identifies affected systems or organizations rather than disclosing specific breach details, operational impacts, or confirmed data compromises. The entry serves cybersecurity analysts to contextualize threat actor presence, geographic origin, and victim classification for defensive monitoring and risk assessment. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32654 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with the Other sector and located within the United States. It is cataloged within the threat-intelligence index under the listing type ransomware victim, with the affiliated threat actor or source identified as interlock. The entity represents an organization or infrastructure referenced in cybersecurity threat reporting concerning ransomware activity. This description maintains factual neutrality regarding the entity's operational scope, sector classification, geographic origin, and its documented association with the interlock threat actor within the intelligence catalog. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32655 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the Other sector and associated with the United States. The domain name suggests potential involvement in digital services or infrastructure, though specific operational details remain limited within available threat-intelligence records. This listing identifies borgerisd.net as a ransomware victim connected to the threat actor interlock, reflecting its inclusion in cybersecurity monitoring frameworks. The entry serves to catalog entities impacted by malicious campaigns, aiding defenders in understanding associated risks and contextualizing the threat actor's activity across sectors and geographies. Neutral documentation ensures clarity without speculative claims regarding incident specifics. |
||||||
| Ransomware | Borger ISD id32655 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim entity based in the United States. The domain name suggests involvement within a digital services or infrastructure sector, though specific operational details remain limited in public threat intelligence records. This listing type identifies the entity as having been impacted by ransomware activity associated with the threat actor interlock. The entry serves threat-intelligence indexing purposes to document adversary-victim relationships and geographic context for security professionals conducting incident analysis and risk assessment. |
||||||
| Ransomware | Borger ISD id32656 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim entity within the threat-intelligence index. Operating within the Other sector and based in the United States, the domain represents an organization or infrastructure entity affected by malicious cyber activity. The listing explicitly associates this entity with the threat actor interlock, reflecting its inclusion in intelligence records documenting ransomware-related incidents and actor attribution. This description provides neutral context regarding the entity's classification, geographic location, sector classification, and its documented relationship to the interlock threat actor without speculating on unconfirmed breach details. The entity serves as a reference point for threat analysts tracking ransomware victim profiles and associated source attributions. |
||||||
| Ransomware | Borger ISD id32660 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the United States. The entity represents an organization or digital presence within a specific sector, though detailed operational specifics remain limited in public threat-intelligence records. Threat-intelligence analysis links this entity to the threat actor interlock, indicating potential cybersecurity exposure or compromise within the broader incident landscape. This listing type categorizes borgerisd.net as a ransomware victim associated with interlock. The description focuses on factual indexing without confirming breach details, data exfiltration specifics, or financial impact, maintaining neutrality and adherence to analytical standards. |
||||||
| Ransomware | Borger ISD id32660 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. The entity operates within a sector relevant to digital services and infrastructure, serving as a reference point in threat-intelligence indexing for cybersecurity analysts. Its inclusion in this ransomware victim listing reflects documented intelligence linking it to the threat actor interlock, underscoring active monitoring of associated malicious activity. This entry provides neutral context for cataloging entities impacted by cyber incidents while maintaining factual restraint regarding unverified operational details. The listing type explicitly categorizes borgerisd.net as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32660 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim entity operating within the United States. The domain name suggests a service or organization in a specific sector, though specific operational details are not publicly confirmed in available intelligence sources. As an entry in this threat-intelligence index, it is associated with threat actor interlock, reflecting documented connections to malicious activity targeting digital infrastructure. This listing provides neutral context for security professionals analyzing ransomware campaigns and associated entities. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. The entity operates within a sector context relevant to cybersecurity monitoring and threat indexing, serving as a reference point within the threat-intelligence catalog. Its inclusion reflects verified intelligence linking it to the interlock threat actor group, which has been documented in cyber threat reporting. This listing type categorizes borgerisd.net specifically as a ransomware victim, providing structured context for security analysts and defenders tracking active threats. The entry remains factual and neutral, documenting the association without extrapolating beyond confirmed intelligence sources. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the technology sector and based in the United States. The entity serves as a reference point within cybersecurity threat intelligence frameworks, documenting exposure to malicious activity attributed to the threat actor interlock. This listing type categorizes the domain within ransomware incident catalogs, providing contextual awareness for defenders monitoring adversary campaigns and associated infrastructure. The description remains neutral regarding specific incident details, as confirmed attribution and operational context are derived solely from the threat-intelligence index classification. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware incident within the threat-intelligence index. The entity operates within the technology and digital services sector, with operational presence linked to the United States. As cataloged under the ransomware victim listing type, it reflects activity tied to the threat actor interlock, which has been documented in cyber threat intelligence databases for deploying ransomware campaigns. This entry provides neutral context regarding the entity's classification without disclosing unverified incident details such as data stolen, ransom demands, or confirmed breach specifics. The listing serves to inform security professionals and stakeholders about potential exposure pathways and associated threat actor behavior. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware incident within the United States. As a ransomware victim listing, it reflects an entity impacted by malicious cyber activity linked to the threat actor interlock. The domain name suggests operational or organizational identity within a specific sector, though specific sector details and offerings cannot be definitively confirmed without verified source documentation. This entry documents the association neutrally for threat-intelligence indexing purposes. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain entity situated in the United States, operating within the Other sector classification. As cataloged in the threat-intelligence index, it is designated as a ransomware victim linked to the interlock threat actor. This listing type identifies the entity's association with malicious activity targeting digital infrastructure. The entry reflects the cybersecurity community's documentation of this specific incident within the broader landscape of threat actor campaigns. The classification underscores the importance of monitoring such entities for organizational risk assessment and defense planning. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is an entity within the Other sector located in the United States. It is cataloged specifically as a ransomware victim within this threat-intelligence index. The association with the threat actor interlock defines its classification for defensive monitoring and threat-mapping purposes. This listing reflects observed connections between the entity and the identified malicious activity without detailing specific incident mechanics or confirmed breach outcomes. The entry serves to inform security professionals of this relationship for risk assessment and proactive defense strategies. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
Borgerisd.net is cataloged as a ransomware victim entity within the threat-intelligence index. The domain name suggests a digital service or organization operating in a technology-adjacent sector, with operational context tied to the United States. As a ransomware victim listing, its profile documents the entity's association with threat actor Interlock, reflecting the cybersecurity threat landscape in which such incidents are tracked and analyzed. This entry provides neutral catalog context for threat researchers and defenders monitoring actor-linked victim profiles. Borgerisd.net was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim entity operating within the United States. The domain name suggests a service-oriented organization, though specific sector, operational offerings, and infrastructure details are not publicly verifiable without confirmed official disclosure from the entity itself. In the threat-intelligence index, it is associated with the threat actor interlock, reflecting the cybersecurity context in which the entity appears. This listing type documents the relationship between the domain/victim entity and the identified threat actor without asserting unconfirmed breach details, stolen data, ransom terms, or operational specifics. The entry provides neutral catalog information for analysts tracking ransomware incidents and actor-linked victim profiles. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is an entity located in the United States within the Other sector. As cataloged in the threat-intelligence index, it is classified as a ransomware victim linked to the threat actor interlock. The entity's specific operational details, infrastructure, or impact specifics are not disclosed in this listing. This entry serves to document the association between borgerisd.net and interlock within the ransomware victim category. The classification reflects the observed relationship between the entity and the identified threat actor as recorded in the intelligence index. |
||||||
| Ransomware | Borger ISD id32662 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located within the United States. The entity operates within a specific sector relevant to cyber threat monitoring and indexing, serving as a reference point within threat-intelligence databases. Its inclusion reflects documented activity linked to the threat actor interlock, which has been identified as the associated source in intelligence reporting. This listing type categorizes the entity as a ransomware victim based on threat actor attribution and geographic origin data. The description maintains factual neutrality regarding operational details while acknowledging its status within the threat-intelligence index. |
||||||
| Ransomware | Borger ISD id32663 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity located in the United States. Publicly available threat-intelligence records categorize it within cybersecurity indexing frameworks, noting its operational context and geographic origin without disclosing specific incident details. The entity is linked to the threat actor interlock, which is documented in cyber threat intelligence databases as a source associated with ransomware activity. This listing type focuses on cataloging victim entities and their attributed threat actors for defensive intelligence purposes. The description remains neutral and avoids speculation regarding data handling, breach confirmation, or operational specifics of the incident. |
||||||
| Ransomware | Borger ISD id32663 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the United States. The entity represents an organization or infrastructure impacted by malicious cyber activity, with its classification within a threat-intelligence index providing context for cybersecurity analysis and monitoring. The listing type identifies borgerisd.net specifically as a ransomware victim connected to the threat actor interlock, which is documented to originate from the United States. This entry serves to catalog the entity's presence in cyber threat landscapes, supporting defenders in tracking associated risks and understanding contextual details without disclosing unverified incident specifics. The description remains neutral and factual, adhering to established threat-intelligence reporting standards. |
||||||
| Ransomware | Borger ISD id32664 View details | United States | Other | pending | ||
|
borgerisd.net is an entity operating within the IT sector based in the United States. The domain name suggests a service or organization focused on information technology infrastructure, though specific operational details remain limited within publicly available threat-intelligence records. This listing type identifies borgerisd.net as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The association indicates exposure to cyber threats targeting IT environments. This profile serves as a reference point for monitoring ransomware activity and associated threat actor behavior in digital security contexts. |
||||||
| Ransomware | Borger ISD id32665 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim incident, with operational context tied to the US jurisdiction. Publicly available intelligence sources categorize this entity within threat-intelligence indexing frameworks, noting its linkage to the threat actor interlock without disclosing specific technical attack vectors or confirmed victim details. The entity serves as a reference point for cybersecurity analysts monitoring adversary activity and victim impact patterns across digital infrastructure sectors. This listing reflects the entity's documented association with interlock as a ransomware victim, presented neutrally for catalog and research purposes. |
||||||
| Ransomware | Borger ISD id32666 View details | United States | Other | pending | ||
|
borgerisd.net is an entity situated within the Other sector and located in the United States. It is cataloged within the threat-intelligence index under the listing type ransomware victim. The association with the threat actor interlock identifies this entity as a target within the operational scope of that specific cyber threat actor. The catalog entry provides neutral context regarding the entity's classification and its linkage to the interlock group without disclosing unverified incident specifics. This description serves to inform stakeholders on the entity's presence and associated threat context. |
||||||
| Ransomware | Borger ISD id32667 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware victim entity operating within the United States. Based on available intelligence context, the entity represents a sector exposed to cyber threats, with its domain serving as a reference point within threat-intelligence indexing frameworks. The listing explicitly categorizes borgerisd.net as a ransomware victim linked to the threat actor interlock, providing critical context for security teams monitoring active campaigns and associated infrastructure. This entry contributes to the broader catalog of incidents where entity names, geographic locations, and threat actor mappings are systematically documented to support proactive defense and intelligence analysis. |
||||||
| Ransomware | Borger ISD id32667 View details | United States | Other | pending | ||
|
borgerisd.net is an entity cataloged within a threat-intelligence index as a ransomware victim. Operating within the technology sector and based in the United States, the domain represents an organization or service that was impacted by malicious activity associated with the threat actor interlock. The listing type identifies this entity specifically as a ransomware victim, reflecting its inclusion in intelligence records tied to cyber incidents involving interlock. No further incident specifics, such as data stolen, ransom demands, or confirmed breach details, are provided to maintain factual neutrality. This entry serves threat analysts and security professionals seeking structured context on entities affected by identified threat actors and their geographic footprint. |
||||||
| Ransomware | Borger ISD id32669 View details | United States | Other | pending | ||
|
borgerisd.net is a domain identifier associated with a ransomware incident within the United States context. While specific operational details of the entity remain limited in public threat-intelligence records, the domain is cataloged under the classification of ransomware victim, explicitly tied to the threat actor interlock. This listing reflects the cybersecurity community's documentation of compromised infrastructure or services linked to this actor's campaigns. The entry serves as a reference point for analysts monitoring interlock's activity and potential impacts across affected sectors. It neutrally states that borgerisd.net was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Borger ISD id32670 View details | United States | Other | pending | ||
|
borgerisd.net is cataloged as a ransomware victim within a threat-intelligence index. Operating within the Other sector and based in the United States, the entity represents infrastructure or organizational assets targeted by malicious activity. The listing type identifies it specifically as a ransomware victim associated with the threat actor interlock. This entry provides neutral, factual context for security professionals monitoring threat patterns and entity relationships. The classification reflects the assessed association without confirming specific incident details such as data stolen, ransom demands, or operational impact. |
||||||