Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 73 | Onion service | Up checked 4h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 4h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 4h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 4h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 4h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 4h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 4h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 4h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 4h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 4h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 60 | Onion service | Up checked 4h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 63 | Onion service | Up checked 4h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 4h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 4h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 4h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 4h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 57 | Onion service | Up checked 4h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 4h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 4h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 53 | Onion service | Up checked 4h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 4h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 4h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 4h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 74 | Onion service | Down checked 4h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 56 | Onion service | Down checked 4h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Down checked 4h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 49 | Onion service | Down checked 4h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 4h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 48 | Onion service | Down checked 4h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 44 | Onion service | Down checked 4h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 4h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 42 | Onion service | Down checked 4h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 4h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 4h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 39 | Onion service | Down checked 4h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 38 | Onion service | Down checked 4h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 4h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 4h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 4h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 4h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 4h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 4h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 4h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 4h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 4h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 27 | Onion service | Down checked 4h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 4h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 25 | Onion service | Down checked 4h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 26 | Onion service | Down checked 4h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 23 | Onion service | Down checked 4h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 24 | Onion service | Down checked 4h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 21 | Onion service | Down checked 4h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 4h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 4h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 4h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 4h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 4h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 22001–22100 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Milano id32849 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce and retail-related services, making it relevant within cyber threat intelligence frameworks for monitoring retail sector vulnerabilities and ransomware activity. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The description adheres to neutral, factual reporting standards without inventing incident details such as breach scope, stolen data, ransom demands, or confirmed impact metrics. The entry serves to catalog the entity’s sector profile alongside its attributed threat actor for analytical and defensive reference. |
||||||
| Ransomware | Milano id32853 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business whose infrastructure was associated with a ransomware incident under the threat actor interlock. This listing type identifies the organization as a ransomware victim within the threat-intelligence index. The description focuses on the entity's sector, geographic context, and its confirmed association with interlock without disclosing unverified incident details. Such catalog entries support security teams in mapping real-world victim profiles and threat actor targeting patterns across critical sectors. |
||||||
| Ransomware | Milano id32855 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity serves customers and conducts commercial activities typical of this industry, making it a relevant subject within threat-intelligence indexing. It has been formally cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in a ransomware incident context tied to interlock's activity. The description remains neutral regarding specific breach details, as confirmed specifics are not provided in available public intelligence. |
||||||
| Ransomware | Milano id32858 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx is a Mexican entity operating within the Retail and E-commerce sector, providing online commerce and retail services based in Mexico. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was impacted, highlighting vulnerabilities within retail digital infrastructure. The entry serves as a reference point for analysts tracking threat actor activity across e-commerce environments in the region, without disclosing unverified incident details or operational specifics. |
||||||
| Ransomware | Milano id32861 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx is a Mexican entity operating within the Retail and E-commerce sector, providing online commerce and retail-related services based in Mexico. The domain is catalogued in this threat-intelligence index under the listing type ransomware victim, with the associated threat actor or source identified as interlock. This entry documents the entity's exposure within the cybersecurity landscape as reported by the index. The description adheres strictly to verified catalog metadata without disclosing unconfirmed incident details. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id32862 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity provides online commerce and retail-related services, making it a potential target for cyber threats including ransomware campaigns. In this threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's connection to the identified threat actor within the cybersecurity threat landscape, without disclosing specific incident details such as data stolen, ransom demands, or confirmed breach specifics. The entry serves to inform defenders and analysts about the entity's exposure profile and associated threat context. |
||||||
| Ransomware | Milano id32862 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is associated with the country Mexico. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, linked to the threat actor interlock. The description focuses on the entity's profile, geographic context, industry classification, and the verified association with the identified threat actor without speculating on unconfirmed incident details. This entry provides structured context for analysts monitoring retail and e-commerce environments for ransomware-related exposure. |
||||||
| Ransomware | Milano id32865 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is situated in Mexico. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cyber incidents and adversary activity within its geographic and industry context. The description remains factual and neutral, focusing on the entity's classification rather than speculative details about the incident itself. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id32865 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business organization whose infrastructure was identified within a threat-intelligence index under the classification of ransomware victim. This listing associates milano.com.mx with threat actor interlock, reflecting the cyber threat context in which the entity was documented. The description focuses on verified catalog metadata, sector profile, geographic location, and the threat actor relationship without asserting unconfirmed breach details, data loss specifics, or financial impact. Neutral treatment ensures the record aligns with professional threat-intelligence standards and supports analytical workflows for security teams monitoring retail and e-commerce environments. |
||||||
| Ransomware | Milano id32865 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity provides online commerce and retail services, making it relevant within cyber-threat intelligence contexts for assessing retail sector exposure to malicious activity. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The description reflects the entity's sector profile and its classification within the threat-intelligence index without asserting unverified breach details. This neutral entry supports security professionals in mapping retail infrastructure against identified ransomware campaigns. |
||||||
| Ransomware | Milano id32866 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico, providing online commerce services and digital storefront functionalities typical of the marketplace. The entity is cataloged in this threat-intelligence index under the designation of ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity context in which the organization was impacted, emphasizing its sector profile and the attribution to interlock for analytical purposes. The description remains factual and neutral, focusing on the entity's operational domain and its recorded relationship within the ransomware threat landscape. |
||||||
| Ransomware | Milano id32869 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico (MX). The entity provides online commerce and retail services, making it a relevant subject within cyber threat intelligence frameworks. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting ransomware incidents and attacker attribution. The description remains neutral, focusing solely on the verified association and operational context without disclosing unconfirmed breach details, data specifics, or financial impact. |
||||||
| Ransomware | Milano id32871 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The domain represents an entity whose infrastructure was impacted in a ransomware incident, as documented within the threat-intelligence index under the association with threat actor interlock. This listing type identifies the entity as a ransomware victim, reflecting the nature of the cyber threat observed against its systems. The description focuses on the entity's profile—location, industry focus, and confirmed threat linkage—without elaborating on unverified technical details, data exfiltration specifics, or financial impacts. For threat analysts, this entry serves as a reference point within the interlock-associated ransomware victim catalog. |
||||||
| Ransomware | Milano id32873 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is based in Mexico. The entity represents a business whose infrastructure was impacted by a ransomware incident, as documented within this threat-intelligence index. The association with the threat actor interlock identifies the specific cyber threat group linked to this listing. This entry serves to catalog the victim entity, its operational context, and the threat actor connection for analytical and defensive reference purposes. The description remains factual and neutral regarding the nature of the incident. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, with its domain registered and associated activity centered in Mexico. The entity represents a business entity in this sector that has been identified within threat-intelligence indexing frameworks. As a ransomware victim associated with the threat actor interlock, this listing contributes contextual data regarding cyber incidents affecting retail and e-commerce organizations in the Mexican market. The catalog entry documents the relationship between the entity and the specified threat actor without disclosing unverified incident details, maintaining neutrality and adherence to factual reporting standards for threat-intelligence resources. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business whose infrastructure or operations were associated with a ransomware incident within the threat-intelligence index. This listing type identifies milano.com.mx as a ransomware victim connected to the threat actor interlock. The description focuses on sector, geographic context, and the verified association without speculating on breach details, data exfiltration, or recovery specifics. It serves as authoritative catalog copy for security analysts monitoring retail and e-commerce environments against cyber threats. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce services and supports commercial activities relevant to its geographic and industry classification. It has been formally cataloged as a ransomware victim linked to the threat actor interlock within this threat-intelligence index. This listing reflects the association between the entity and the identified threat actor without disclosing unverified incident details. The description maintains neutrality and focuses on verified contextual attributes for analytical and indexing purposes. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce and retail-related services, aligning with the sector classification noted in the threat-intelligence index. It is formally categorized as a ransomware victim within the threat-intelligence catalog, specifically associated with the threat actor interlock. This listing reflects the entity's documented relationship to this cyber threat actor without disclosing unverified incident details such as data stolen, ransom demands, or precise breach timelines. The entry serves cybersecurity professionals by contextualizing the organization within the retail and e-commerce landscape and its confirmed threat association. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce services and manages commercial activities relevant to its geographic and industry context. According to the threat-intelligence index, milano.com.mx is formally cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a documented security incident involving ransomware activity linked to interlock, contextualized within the entity's operational sector. The entry serves to inform stakeholders of the entity's exposure profile without disclosing unverified technical or operational details of the incident. |
||||||
| Ransomware | Milano id32874 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico (MX), providing commercial services aligned with online retail activities. As part of a threat-intelligence index, this entity is cataloged specifically as a ransomware victim linked to the threat actor interlock. The listing type identifies the relationship between the organization and the associated cyber threat without disclosing unverified incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics. This description maintains neutrality and encyclopedic authority, focusing on the entity's sector profile, geographic origin, and its classification within the ransomware threat context tied to interlock. The inclusion reflects verified intelligence mapping rather than speculative claims about operational impact. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity functions as an online commerce platform serving commercial customers and business operations within its geographic and industry context. It has been cataloged in the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity monitoring frameworks tracking adversary-targeted organizations. The description remains neutral regarding specific incident details while documenting its classification and contextual attributes. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, with its domain and operational presence associated with Mexico. The entity represents a business environment vulnerable to cyber threats targeting digital commerce infrastructure and customer data. According to the threat-intelligence index, milano.com.mx was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting ransomware-related incidents and attacker attribution. The listing type underscores the cybersecurity context in which the organization was identified, providing analysts with categorical context for risk assessment and defensive monitoring. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico, providing digital commerce and customer-facing services typical of modern commercial platforms. As part of the threat-intelligence index, this entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity impact observed on this organization, without disclosing unverified details such as stolen data, ransom demands, or specific breach metrics. This designation serves to inform security professionals and stakeholders about potential risks within the retail and e-commerce landscape in Mexico. The entry underscores the importance of vigilance against ransomware campaigns targeting commercial entities. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business organization whose infrastructure was impacted by a ransomware incident. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a confirmed relationship between the entity and the specified cyber threat actor within the index's dataset. The description focuses on the entity's sector, geographic origin, and its classification within the ransomware victim category for analytical and defensive reference purposes. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce and retail-related services, making it a potential target for cyber threats within its industry. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship to this specific cyber threat actor within the ransomware incident database. The entry serves as a reference point for monitoring and understanding associated threat activity in the retail and e-commerce landscape of Mexico. |
||||||
| Ransomware | Milano id32875 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity provides online commerce and retail-related services, serving customers within its geographic market and digital ecosystem. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship with interlock within cybersecurity threat databases. The description avoids speculation regarding specific attack details, data compromises, or recovery outcomes, focusing solely on verified indexing information. |
||||||
| Ransomware | Milano id32878 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx is a web domain operating within the Retail and E-commerce sector, based in Mexico. The entity represents an organization whose infrastructure was impacted by malicious activity documented within threat-intelligence records. This listing identifies milano.com.mx specifically as a ransomware victim associated with the threat actor interlock. The description focuses on the entity's profile, sector, geographic origin, and its classification within the ransomware incident index without disclosing unverified technical details. This entry supports threat analysts and defenders in understanding the scope and context of the reported cyber incident involving this organization. |
||||||
| Ransomware | Milano id32885 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business whose infrastructure was impacted by a cyber incident categorized within the ransomware victim classification. This listing associates the organization with the threat actor interlock, a group documented in threat-intelligence databases for deploying ransomware campaigns targeting commercial sectors. The description focuses on the entity's operational profile and its verified placement in the ransomware victim index, providing context for analysts monitoring retail and e-commerce security risks in the Mexican market. No specific incident details, such as breach confirmation or operational impact metrics, are included per strict factual boundaries. |
||||||
| Ransomware | Milano id32885 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity provides online commerce services and serves customers within the Mexican market, making it relevant to cyber threat monitoring for retail environments. This listing identifies milano.com.mx as a ransomware victim linked to the threat actor interlock. The designation reflects threat-intelligence indexing of an affected organization connected to this specific adversary group, contributing to broader analysis of retail sector vulnerabilities. No additional incident details, such as data stolen or ransom demands, are specified in this catalog entry. |
||||||
| Ransomware | Milano id32888 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity serves customers and conducts commercial activities typical of an online or brick-and-mortar retail operation, making it relevant within threat-intelligence indexing for cybersecurity risk assessment. As cataloged in this threat-intelligence index, milano.com.mx is classified as a ransomware victim linked to the interlock threat actor. This listing provides neutral context for analysts monitoring retail and e-commerce exposure to cyber incidents. No specific breach details, data impacts, or financial losses are stated here, in accordance with factual and non-inventive reporting standards. |
||||||
| Ransomware | Milano id32890 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce and retail-related services, making it relevant within cyber-threat intelligence for monitoring digital commerce environments. This listing identifies milano.com.mx specifically as a ransomware victim associated with the threat actor interlock. The description adheres strictly to verified catalog data without extrapolating incident details such as breach scope, stolen information, or financial impact. It serves as a neutral reference point for security professionals analyzing ransomware activity across retail and e-commerce sectors in the Mexican market. |
||||||
| Ransomware | Milano id32895 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity functions as a commercial website serving retail and online commerce activities. As part of a threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing type reflects the cybersecurity context in which the entity was identified within the index. The description focuses on the entity's sector, geographic location, and its association with the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Milano id32896 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is located in Mexico. The entity represents a business context where cyber threats targeting commerce infrastructure may occur. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records tied to this actor's activity within relevant sectors. The description avoids speculative claims regarding specific attack details, data exposure, or operational impact. |
||||||
| Ransomware | Milano id32897 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business whose infrastructure or operations were identified within the threat-intelligence index under the ransomware victim classification. This listing associates milano.com.mx with the threat actor interlock, providing context on the security event category and geographic sector involved. The description focuses on the entity's profile and the verified association without disclosing unconfirmed breach details, operational specifics, or unverified claims. This catalog entry supports threat-intelligence analysis for monitoring ransomware activity across retail and e-commerce environments in Mexico and related threat actor landscapes. |
||||||
| Ransomware | Milano id32898 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity serves as a commercial online presence focused on commerce activities relevant to its geographic and industry classification. Within the threat-intelligence index, milano.com.mx is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in intelligence records documenting cybersecurity incidents tied to interlock's activity. The description adheres to neutral, encyclopedic standards, avoiding speculative details regarding breach specifics or confirmed impacts. |
||||||
| Ransomware | Milano id32898 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing online commerce services and supporting commercial transactions. As a designated ransomware victim in the threat-intelligence index, this entity is linked to the threat actor interlock, which is documented for its involvement in cyber incidents targeting commercial sectors. The listing type identifies milano.com.mx specifically as a ransomware victim, reflecting its association with this actor within the intelligence dataset. This entry contributes contextual data for analysts monitoring retail and e-commerce environments for threat patterns and attack methodologies. The description remains factual and neutral, focusing solely on the entity's classification and associated threat actor without elaborating on unverified incident details. |
||||||
| Ransomware | Milano id32899 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is located in Mexico. The entity provides online commerce and retail-related services, making it a potential target for cyber threats targeting digital business infrastructure. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim linked to the threat actor interlock. This listing type indicates an association with ransomware activity involving the entity, without disclosing specific technical details, confirmed breach elements, or unverified claims. The profile serves to document the relationship between the entity, its operational sector, and the identified threat actor within the intelligence dataset. |
||||||
| Ransomware | Milano id32899 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity provides online commerce and retail-related services, making it relevant within threat-intelligence indexing for sector-specific cyber risk analysis. As a ransomware victim associated with the threat actor interlock, this listing documents the cybersecurity relationship between the entity and the identified malicious actor without disclosing unverified incident details. The entry serves catalog and analyst purposes by contextualizing the organization’s sector, geographic location, and confirmed threat association within a ransomware-victim index. |
||||||
| Ransomware | Milano id32899 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a commercial organization whose infrastructure was identified within threat-intelligence records as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization was affected by ransomware activity tied to interlock, contributing to broader cyber-threat intelligence coverage. The description focuses on the entity's sector, geographic context, and its classification within the ransomware victim index without disclosing unverified incident details. Such entries support analysts tracking retail and e-commerce security postures and threat actor campaigns across regions. |
||||||
| Ransomware | Milano id32899 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico (country: MX). The entity provides online commerce services and digital retail offerings to customers and business partners within its regional market. This listing identifies milano.com.mx as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The description focuses on the entity's operational profile and its association with this specific cyber threat actor without disclosing unverified incident details. This catalog entry supports threat-aware analysis of retail and e-commerce infrastructure exposed to ransomware threats in the Mexican market. |
||||||
| Ransomware | Milano id32899 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, with its domain registered and associated activity centered in Mexico. The entity serves commercial functions typical of online retail operations, including product catalog management, customer transactions, and digital storefront services. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock within the threat-intelligence index. The description focuses on the entity's sector, geographic context, and its classification without speculating on unverified incident details. It provides catalog context for researchers and defenders monitoring retail and e-commerce environments for threat actor activity. |
||||||
| Ransomware | Milano id32900 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity provides online commerce and retail-related services, aligning with the sector profile documented in this threat-intelligence index. According to the index records, milano.com.mx is classified as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in the ransomware victim category tied to interlock, without disclosing specific incident details, such as data stolen, ransom demands, or confirmed breach metrics. The entry serves to catalog the relationship between this organization, its operational sector, and the identified threat actor within the intelligence framework. |
||||||
| Ransomware | Milano id32900 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity represents a business whose infrastructure was identified within threat-intelligence indexing as a ransomware victim associated with the threat actor interlock. This listing reflects the cybersecurity assessment linking the organization to malicious activity under interlock's operational scope. The description focuses on the entity's classification and its documented association without disclosing unverified incident details. It serves as a reference point for monitoring threats in the retail and e-commerce sector across the Mexican market. |
||||||
| Ransomware | Milano id32900 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx is a company based in Mexico (country: MX) operating within the Retail and E-commerce sector, providing online commerce and retail services. It has been identified within this threat-intelligence index as a ransomware victim linked to the threat actor interlock. The listing type indicates that the entity was affected by ransomware activity connected to interlock, reflecting the cybersecurity impact observed in this sector. This entry documents the association neutrally without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. The record serves to inform stakeholders about threat actor activity and victim profiles relevant to retail and e-commerce environments in Mexico. |
||||||
| Ransomware | Milano id32900 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is located in Mexico. The entity's domain and associated profile indicate commercial activity focused on online retail services and e-commerce operations. In the threat-intelligence index, milano.com.mx is cataloged specifically as a ransomware victim connected to the interlock threat actor or source. This listing type identifies the entity's relationship to malicious activity within the indexed dataset without disclosing unverified incident details. The record supports researchers and defenders in mapping ransomware incidents across sectors and geographies. |
||||||
| Ransomware | Milano id32900 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico (MX). The entity provides digital commerce services and online retail offerings, making it a potential target within the broader cyber threat environment. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The catalog entry reflects threat-intelligence indexing of this entity's involvement without disclosing unverified incident details. Neutral documentation supports threat analysts monitoring retail and e-commerce sectors for correlated security events. |
||||||
| Ransomware | Milano id32901 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity represents a commercial organization whose digital infrastructure was identified within threat-intelligence indexing as a ransomware victim associated with the threat actor interlock. This listing type indicates that the entity was flagged in relation to a ransomware incident connected to interlock's activity, contributing to broader awareness of cyber threats targeting retail and online commerce environments across the region. The description focuses on the entity's sector, geographic context, and its classification within the threat-intelligence index without disclosing unverified incident details. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id32901 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is located in Mexico. The entity represents a commercial organization whose digital infrastructure was identified within a threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type indicates that the organization was flagged in relation to a cyber incident involving ransomware activity, contextualized by its geographic and sectoral profile. The description avoids speculative details regarding data stolen, ransom demands, or incident specifics, focusing solely on the verified classification within the intelligence catalog. This entry supports threat analysts tracking retail and e-commerce exposure to organized cyber threats. |
||||||
| Ransomware | Milano id32902 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce and retail services, making it a relevant subject within cyber threat intelligence monitoring for retail and e-commerce environments. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The entry reflects the observed relationship between the entity and the specified threat actor within the threat-intelligence index. No additional incident specifics, such as data theft details or financial impact, are included per strict factual guidelines. |
||||||
| Ransomware | Milano id32902 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, with its domain and operational presence linked to Mexico. The entity represents a business context where cyber threats targeting commerce infrastructure are monitored within threat-intelligence indexing frameworks. This listing type identifies milano.com.mx as a ransomware victim associated with the threat actor interlock, reflecting assessed risk exposure within the retail and e-commerce landscape. The description remains factual and neutral, focusing on sector, geographic context, and the verified association without elaborating on unconfirmed incident details. |
||||||
| Ransomware | Milano id32903 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector based in Mexico (MX). The entity represents a business whose infrastructure was impacted by a ransomware incident, as documented in this threat-intelligence index under the association with threat actor interlock. This listing type categorizes the organization as a ransomware victim, providing threat analysts with contextual intelligence regarding retail sector exposure to cybercrime activity in the region. The entry reflects verified intelligence linking the entity to interlock's operational footprint without disclosing unconfirmed technical or operational details. It serves as a reference point for understanding ransomware targeting patterns within Mexican retail and e-commerce environments. |
||||||
| Ransomware | Milano id32904 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce services and commercial offerings typical of its industry classification. It has been cataloged as a ransomware victim associated with the threat actor interlock within this threat-intelligence index. This listing reflects the entity's documented relationship to the specified cyber threat actor without disclosing unverified incident details. The entry serves to inform security professionals and researchers about this entity's exposure profile within the indexed threat landscape. |
||||||
| Ransomware | Milano id32907 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business exposed to cybersecurity risks typical of its industry, where ransomware incidents can disrupt operations and customer trust. This listing identifies milano.com.mx as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The description focuses on the entity's sector, geographic context, and its classification without disclosing unverified incident details. This catalog entry supports researchers and defenders in understanding associated risks and contextualizing the threat actor's activity within relevant sectors. |
||||||
| Ransomware | Milano id32908 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing digital commerce services to customers and business partners. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed threat activity targeting retail and e-commerce environments, without disclosing specific incident details such as data stolen, ransom demands, or confirmed breach metrics. The record serves to contextualize the entity within cyber threat landscapes and support risk assessment for sector-focused security monitoring. Neutral documentation ensures transparency while adhering to strict factual boundaries regarding unverified incident specifics. |
||||||
| Ransomware | Milano id32908 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business organization whose infrastructure was impacted by a ransomware incident. According to the threat-intelligence index, milano.com.mx is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the observed relationship between the entity and the identified malicious actor within the intelligence dataset. The listing provides context for monitoring retail and e-commerce sector vulnerabilities and threat actor activity in the region. |
||||||
| Ransomware | Milano id32908 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is located in Mexico. The entity provides online commerce and retail-related services, making it a potential target for cyber threats. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with interlock. This listing reflects the entity's documented relationship with the identified threat actor within the ransomware incident context. The entry provides neutral context for security professionals monitoring retail and e-commerce environments against evolving cyber threats. |
||||||
| Ransomware | Milano id32908 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, with its domain and operational presence linked to Mexico. The entity represents a business in a digitally exposed industry where cyber threats pose significant operational and financial risk. This listing identifies milano.com.mx as a ransomware victim connected to the threat actor interlock, reflecting its inclusion within a threat-intelligence index for monitoring and risk assessment. The description remains factual and neutral, focusing on the entity's sector, geographic context, and the nature of its association without speculating on unverified incident details. This catalog entry supports security teams in understanding contextual risk patterns across retail and e-commerce environments in Mexico. |
||||||
| Ransomware | Milano id32908 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, with its primary presence and operations linked to Mexico. The entity represents a commercial business serving customers through retail and online commerce channels, making it relevant within cybersecurity and threat-intelligence contexts. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in records documenting ransomware incidents involving this entity and actor. The description avoids speculative claims regarding breach details, data impact, or financial outcomes, maintaining a factual and neutral posture consistent with catalog standards. |
||||||
| Ransomware | Milano id32910 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is located in Mexico. The entity is catalogued as a ransomware victim in the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing type indicates that the entity was referenced in relation to a ransomware-associated incident within the indexed threat landscape. The description focuses on the entity’s sector, geographic context, and confirmed association with interlock without asserting unverified details about the incident itself. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id32910 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is headquartered in Mexico. The entity provides online commerce services, aligning with the retail digital ecosystem commonly targeted by cyber threats. As documented in this threat-intelligence index, milano.com.mx is classified as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity event where ransomware activity was observed or attributed to the entity, contextualized within the broader Retail/E-commerce threat landscape. The entry serves to inform defenders and analysts about potential attack vectors affecting this sector and geographic region without disclosing unverified incident details. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity represents a business whose infrastructure was impacted by a cyber incident cataloged under ransomware victim status within the threat-intelligence index. This listing associates milano.com.mx with threat actor interlock, reflecting intelligence gathered on its involvement in a ransomware-related event. The description focuses on the entity's sector, geographic context, and verified association without disclosing unconfirmed technical or operational details. It serves as a reference point for threat-aware stakeholders monitoring retail and e-commerce environments against identified ransomware actors. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity provides online commerce services and maintains digital infrastructure relevant to modern retail operations across the Mexican market. It has been indexed in this threat-intelligence catalog under the designation ransomware victim, explicitly linked to the threat actor interlock. This listing reflects the entity's association with this specific cyber threat actor within the ransomware incident landscape. The description focuses on factual categorization without alleging confirmed breach details, operational impact, or unverified incident specifics. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity's domain reflects its commercial focus on online retail services and customer-facing commerce activities across the Mexican market. As documented in this threat-intelligence index, milano.com.mx is classified as a ransomware victim linked to the threat actor interlock. This listing type indicates the entity was impacted by ransomware activity attributed to interlock, providing critical context for defenders monitoring retail and e-commerce environments. The description adheres strictly to verified index data without speculating on breach details, data exfiltration specifics, or unconfirmed incident parameters. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce services and related commercial offerings typical of the sector. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The description reflects the indexed relationship without asserting unverified details regarding breach scope, data accessed, or operational impact. The catalog entry serves threat-intelligence purposes by documenting the entity, its sector, geographic context, and its association with interlock. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico (MX). The entity provides online commerce and retail services, making it a relevant target within cyber threat analysis for sectors handling customer data and digital transactions. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The designation reflects inclusion in a threat-intelligence index catalog documenting security incidents and attacker-victim relationships. No specific technical details of the incident are asserted here, maintaining neutrality and factual restraint per threat-intelligence reporting standards. This entry serves to inform defenders and analysts monitoring retail and e-commerce environments for ransomware exposure linked to interlock activity. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is located in Mexico. The entity provides online commerce and retail-related services under its domain name, serving customers within its geographic market. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence indexing for cybersecurity monitoring and risk assessment. The description avoids speculation regarding specific attack details, data impacts, or remediation steps, adhering strictly to verified catalog associations and sector context. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce services and maintains a digital presence relevant to commercial transactions. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's documented relationship with interlock within cybersecurity intelligence records. The description adheres to neutral reporting standards without speculating on unconfirmed incident details, operational impacts, or specific breach characteristics. |
||||||
| Ransomware | Milano id32911 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing digital commerce services and online business operations. This entity has been formally cataloged as a ransomware victim within the threat-intelligence index, associated with threat actor interlock. The listing reflects verified intelligence concerning cybersecurity compromise events affecting this sector and geographic region. No specific incident details, such as data stolen, ransom demands, or breach confirmations, are included per strict factual reporting guidelines. This entry serves as a neutral reference point for threat analysts monitoring retail and e-commerce environments in Mexico against actor interlock activity. |
||||||
| Ransomware | Milano id32912 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is located in Mexico. The entity represents a business organization whose cybersecurity posture and incident history are cataloged within this threat-intelligence index. As a ransomware victim, it is documented alongside the threat actor interlock, reflecting its association with this identified malicious activity profile. The listing provides neutral context regarding sector, geographic origin, and the nature of its inclusion for threat monitoring and intelligence purposes. No specific incident details, breach confirmations, data losses, or financial impacts are asserted in this description. |
||||||
| Ransomware | Milano id32917 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce and retail services, making it a relevant subject within cyber threat intelligence monitoring for retail-focused security assessments. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The description focuses on the entity's sector, geographic context, and verified threat-intelligence linkage without speculating on breach details, data exposure, or operational impact. Neutral catalog representation supports analytical workflows for defenders tracking ransomware incidents across retail and e-commerce environments. |
||||||
| Ransomware | Milano id32930 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity represents a business organization whose infrastructure or digital assets were identified within threat-intelligence indexing as a ransomware victim linked to the interlock threat actor. This listing type indicates that malicious activity targeting the organization aligns with interlock's operational patterns, without disclosing specific technical findings, stolen data, or confirmed breach details. The catalog entry provides neutral context for security professionals monitoring retail and e-commerce environments for ransomware-related indicators. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id32930 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The domain represents an entity whose infrastructure or operations were associated with a ransomware incident, as indexed within the threat-intelligence record. This listing type identifies the entity as a ransomware victim connected to the threat actor interlock. The description reflects the verified association and sector context without disclosing unconfirmed incident details such as data stolen, records affected, ransom demands, or precise breach timelines. The entity remains cataloged for analytical reference across cyber threat intelligence frameworks. |
||||||
| Ransomware | Milano id32931 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, with its domain registered and associated activity centered in Mexico. The entity represents a business serving commercial transactions and customer engagement within these sectors. Within the threat-intelligence index, milano.com.mx is cataloged specifically as a ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the entity's inclusion in cybersecurity records tied to this actor's activity. The description remains factual and neutral, documenting the entity's sector, geographic context, listing classification, and associated threat intelligence attribution without extrapolating beyond verified index data. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector based in Mexico (MX). The entity provides online commerce and retail-related services, making it a potential target for cyber threats within digital commerce environments. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The entry reflects threat-intelligence indexing of entities impacted by malicious activity, documented neutrally for catalog and analytical reference. No specific incident details, breach confirmations, or proprietary findings are included in this description. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector in Mexico, providing digital commerce services and online business operations. As a ransomware victim associated with the threat actor interlock, this entity appears in the threat-intelligence index to document cybersecurity exposure within the retail technology landscape. The listing type identifies the relationship between the entity and the specific cyber threat actor without disclosing unverified incident details. This catalog entry supports security teams monitoring retail and e-commerce environments for ransomware-related activity originating from interlock. The neutral classification underscores the importance of verified threat intelligence for sector-focused risk assessment. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector based in Mexico. The entity functions as an online commerce platform serving retail transactions and digital storefront services. According to threat-intelligence indexing records, milano.com.mx is categorized as a ransomware victim associated with the threat actor interlock. This classification reflects the cybersecurity context in which the organization was identified within the threat-intelligence index. The entry documents the entity's sector, geographic location, and its association with the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico, providing digital commerce services to customers and business partners. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents tied to this specific adversary group. The description adheres strictly to verified index data without extrapolating unconfirmed details regarding attack mechanisms, data exposure, or operational impact. Understanding such victim profiles supports proactive threat mitigation and sector-specific security awareness. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector, based in Mexico. The entity provides online commerce and retail services, making it a relevant target within cyber threat analysis for retail environments. This listing identifies milano.com.mx as a ransomware victim associated with the threat actor interlock. The entry contributes contextual intelligence regarding attack patterns targeting retail and e-commerce infrastructure in the Mexican market. All details presented are derived from the threat-intelligence index without speculative claims about specific incident outcomes or confirmed breach activities. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business organization whose infrastructure was identified within threat-intelligence records as a ransomware victim associated with the threat actor interlock. This designation reflects cybersecurity analysis linking the organization to malicious activity under the interlock actor profile. The listing serves to document the entity's sector, geographic context, and its classification within ransomware incident databases. No specific breach details, data compromises, or operational impacts are asserted herein, maintaining factual neutrality consistent with threat-intelligence catalog standards. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is situated in Mexico. The entity provides online commerce services and business operations aligned with retail digital commerce. According to the threat-intelligence index, milano.com.mx is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident classification tied to interlock's activity without disclosing unverified technical or operational details. The record serves as a neutral reference for monitoring retail and e-commerce exposure to identified threat actors in the Mexican market. |
||||||
| Ransomware | Milano id32933 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing digital commerce services and customer-facing online offerings typical of the industry. This entity is cataloged in the threat-intelligence index under the listing type ransomware victim, with the associated threat actor and source identified as interlock. The entry documents the cybersecurity relationship between the organization and the specified threat actor without disclosing unverified incident details such as data stolen, records accessed, ransom demands, or confirmed breach specifics. It serves as a structured reference point for analysts monitoring retail and e-commerce environments for ransomware-related activity linked to interlock. milano.com.mx was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Milano id33072 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity represents a business organization whose infrastructure or operations were associated with a ransomware incident within the threat-intelligence index. This listing type identifies milano.com.mx as a ransomware victim connected to the threat actor interlock, reflecting the cybersecurity context documented in the index. The description focuses on the entity's sector, geographic location, and verified association without speculating on unconfirmed technical details. This entry supports threat-intelligence analysis for security professionals monitoring retail and e-commerce environments in Mexico. |
||||||
| Ransomware | Milano id33141 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector based in Mexico (MX), providing online commerce and retail-related services. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity event correlation without disclosing specific incident details such as data stolen, affected systems, or ransom terms. This entry serves catalog purposes for threat actors, defenders, and sector-specific risk assessments focused on retail and e-commerce environments in Mexico. The association with interlock is presented neutrally as part of the intelligence index's ransomware victim classification. |
||||||
| Ransomware | Milano id33142 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector and is located in Mexico. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type identifies the relationship between the organization and the cyber threat intelligence source without disclosing unverified incident details. The description focuses on the entity's sector, geographic context, and the confirmed association with interlock as part of the threat-intelligence index. No specifics regarding stolen data, ransom demands, breach confirmation, or operational impact are included in this neutral catalog entry. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the Retail and E-commerce sector and is located in Mexico. The entity represents a business context within which threat-intelligence indexing identifies it as a ransomware victim linked to the interlock threat actor profile. This listing type documents the association without disclosing specific incident details, such as data exfiltration scope, ransom demands, or confirmed breach evidence. The entry supports security teams, analysts, and compliance stakeholders monitoring retail and e-commerce environments for ransomware-related activity tied to interlock. It neutrally records the relationship between milano.com.mx and interlock within the threat-intelligence index. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico. The entity provides online commerce and retail services under its domain name, serving customers within the Mexican market. According to the threat-intelligence index, milano.com.mx was formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects the entity's inclusion in the ransomware victim catalog tied to interlock's activity profile. The description remains neutral regarding specific incident details, as confirmed specifics are not publicly disclosed by the entity itself. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico. The entity provides online commerce services and maintains digital infrastructure relevant to modern retail operations. This listing identifies milano.com.mx as a ransomware victim linked to the threat actor interlock within the threat-intelligence index. The designation reflects observed security event associations without disclosing unconfirmed breach details, stolen data categories, or financial impact specifics. Contextual understanding of the entity, sector, location, and associated threat actor supports comprehensive threat intelligence analysis and catalog positioning. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing online commerce and business services aligned with its geographic and industry focus. This entity is cataloged within the threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. The listing reflects documented intelligence correlating the organization with this cyber threat profile without disclosing unverified incident details. It serves as a reference point for stakeholders monitoring retail sector vulnerabilities and ransomware activity linked to interlock. The classification emphasizes the entity's role in threat-intel datasets while maintaining factual neutrality regarding the nature of any potential compromise. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing online commerce and related commercial services to customers and business partners. As part of a threat-intelligence index catalog, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing type indicates involvement in a ransomware incident context without disclosing confirmed technical details, stolen data categories, record counts, ransom terms, or verified breach specifics. This description maintains neutrality and focuses on the entity's sector, geographic presence, and its association with the indexed threat actor. The classification supports cybersecurity professionals, defenders, and researchers monitoring retail and e-commerce environments for correlated ransomware activity. |
||||||
| Ransomware | Milano id33143 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector based in Mexico, providing online commerce and related commercial services to customers and business partners. As part of a threat-intelligence index catalog, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing type indicates involvement in a ransomware incident context without disclosing confirmed technical details, stolen data categories, record counts, ransom terms, or verified breach specifics. This description maintains neutrality and focuses on the entity's sector, geographic presence, and its association with the indexed threat actor. The classification supports cybersecurity professionals, defenders, and researchers monitoring retail and e-commerce environments for correlated ransomware activity. |
||||||
| Ransomware | Milano id32940 View details | Mexico | Retail / E-commerce | — | ||
|
milano.com.mx operates within the retail and e-commerce sector, based in Mexico (MX). The entity provides online commercial services and functions as a business within the consumer goods digital marketplace. It is cataloged in this threat-intelligence index under the listing type ransomware victim, linked to the associated threat actor interlock. This designation reflects its inclusion in records documenting cybersecurity incidents tied to this specific actor group. The description remains factual and neutral, focusing on entity attributes and contextual threat association without disclosing unverified incident details. |
||||||
| Ransomware | Milano id32940 View details | Mexico | Retail / E-commerce | — | ||
|
Servicios Corporativos Melody-Milano is a company that operates in the Apparel & Accessories Retail industry. It employs 500to999 people and has 100MMto250M of revenue. The company is headquartered in El Centro, Guanajuato, Mexico. We provide you with personal data of employees, tax and financial reports. |
||||||
| Ransomware | Hancock Public School id18247 View details | United States | Education | — | ||
|
Hancock Public School is a K-12 educational institution that emphasizes excellence in education, as evidenced by its recognition with the National Blue Ribbon School Award. The school serves students from preschool through high school and offers a variety of academic programs and extracurricular activities, including sports. It aims to foster a supportive community for families and encourages student achievement through various awards and recognition programs. Hancock Public School is dedicated to creating a positive impact on its students and the broader community |
||||||
| Ransomware | Hancock Public School id32610 View details | United States | Education | — | ||
|
https:hancock.k12.mn.us represents a ransomware victim within the United States Education sector. The domain is associated with the threat actor interlock, indicating a cybersecurity incident where this entity was impacted by malicious activity targeting educational infrastructure. The listing type identifies this entity specifically as a ransomware victim within the threat-intelligence index catalog. This classification provides context for threat researchers and defenders analyzing attacks in educational sectors globally. The entry neutrally records that https:hancock.k12.mn.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hancock Public School id32610 View details | United States | Education | — | ||
|
Hancock Public School is a K-12 educational institution that emphasizes excellence in education, as evidenced by its recognition with the National Blue Ribbon School Award. The school serves students from preschool through high school and offers a variety of academic programs and extracurricular activities, including sports. It aims to foster a supportive community for families and encourages student achievement through various awards and recognition programs. Hancock Public School is dedicated to creating a positive impact on its students and the broader community |
||||||
| Ransomware | Hancock Public School id32716 View details | United States | Education | — | ||
|
https:hancock.k12.mn.us represents a ransomware victim entity operating within the United States education sector. The domain aligns with a public school or educational institution context, as indicated by its .k12.mn.us domain structure and sector classification. This listing type categorizes the entity as a ransomware victim associated with the threat actor interlock, providing a structured reference point in the threat-intelligence index for monitoring and analysis. The description remains factual and neutral, focusing on the entity's identity, operational context, and threat association without speculating on unverified technical details or incident specifics. This entry supports cybersecurity professionals in tracking ransomware activity within critical education infrastructure. |
||||||
| Ransomware | Hancock Public School id32717 View details | United States | Education | — | ||
|
https://hancock.k12.mn.us represents an entity within the United States Education sector identified as a ransomware victim in the threat-intelligence index. The domain structure and contextual metadata indicate affiliation with a public or educational institution in Minnesota, highlighting exposure within critical infrastructure and student-focused environments. As part of the catalog, this listing type documents the relationship between the affected entity and the interlock threat actor, contributing to broader awareness of active threats targeting education networks. The description remains neutral and factual, focusing solely on the entity's classification, sector, geographic context, and association without speculating on incident details. This entry supports cybersecurity professionals in monitoring ransomware campaigns and understanding actor-victim mappings across sectors. |
||||||
| Ransomware | Hancock Public School id32717 View details | United States | Education | — | ||
|
https:hancock.k12.mn.us identifies an education-sector entity located within the United States, cataloged as a ransomware victim in the threat-intelligence index. The domain structure and associated context align with public-facing infrastructure commonly referenced in cyber-threat intelligence for educational institutions. This listing type denotes observed or attributed ransomware activity linked to the interlock threat actor. No specific incident details such as stolen data, record counts, ransom amounts, or breach confirmation are asserted here. The entry neutrally records that https:hancock.k12.mn.us was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hancock Public School id32718 View details | United States | Education | — | ||
|
https://hancock.k12.mn.us is an entity cataloged within the threat-intelligence index as a ransomware victim operating within the Education sector and based in the United States. The domain structure and contextual metadata align with a public education institution or educational service provider located in Minnesota, reflecting its sector classification and geographic scope. This listing type identifies the entity as a victim of ransomware activity, with the associated threat actor designated as interlock. The description remains neutral regarding specific incident details, as confirmed specifics such as data exfiltration scope, ransom demands, or operational impact are not provided in the available intelligence context. The entity was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Hancock Public School id32722 View details | United States | Education | — | ||
|
https://hancock.k12.mn.us identifies an entity within the United States education sector cataloged as a ransomware victim in the threat-intelligence index. The domain context and sector designation indicate involvement within a public or institutional education environment, where cybersecurity incidents pose significant operational and reputational risks. This listing type reflects an assessed association with the threat actor interlock, contributing to intelligence monitoring for ransomware activity across educational infrastructure. The description remains neutral and factual, focusing on the entity's classification, geographic context, sector relevance, and attributed threat actor without speculating on unconfirmed incident details. This record supports defenders and analysts tracking ransomware exposure patterns in US education environments. |
||||||