Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 73 | Onion service | Up checked 3h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 3h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 3h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 3h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 3h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 3h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 3h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 3h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 3h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 3h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 60 | Onion service | Up checked 3h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 63 | Onion service | Up checked 3h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 3h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 3h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 3h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 3h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 57 | Onion service | Up checked 3h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 3h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 3h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 53 | Onion service | Up checked 3h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 3h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 3h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 3h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 74 | Onion service | Down checked 3h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 56 | Onion service | Down checked 3h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Down checked 3h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 49 | Onion service | Down checked 3h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 3h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 48 | Onion service | Down checked 3h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 44 | Onion service | Down checked 3h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 3h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 42 | Onion service | Down checked 3h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 3h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 3h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 39 | Onion service | Down checked 3h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 38 | Onion service | Down checked 3h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 3h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 3h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 3h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 3h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 3h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 3h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 3h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 3h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 3h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 27 | Onion service | Down checked 3h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 3h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 25 | Onion service | Down checked 3h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 26 | Onion service | Down checked 3h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 23 | Onion service | Down checked 3h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 24 | Onion service | Down checked 3h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 21 | Onion service | Down checked 3h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 3h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 3h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 3h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 3h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 3h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 3h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 3h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 3h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 3h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 3h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 3h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 3h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 3h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 3h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 3h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 3h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 2901–3000 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Cold Front Distribution id32639 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services relevant to online retail operations. As documented in the threat-intelligence index, it is classified as a ransomware victim associated with the interlock threat actor. The entity serves as a reference point for understanding ransomware impacts across retail and e-commerce environments, where operational continuity and customer data integrity are critical concerns. This listing supports cyber-threat intelligence cataloging by contextualizing the entity within its sector, geographic location, and confirmed threat association without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32641 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and online retail infrastructure. As a ransomware victim indexed in this threat-intelligence catalog, the entity's profile is associated with the threat actor interlock. This listing type documents the relationship between the entity and the identified cyber threat actor without disclosing unverified incident details such as data stolen, ransom demands, or specific breach metrics. The entry serves cybersecurity stakeholders by cataloging victim context alongside attributed threat intelligence for risk assessment and defensive planning. |
||||||
| Ransomware | Cold Front Distribution id32641 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with the threat actor interlock. The listing reflects the observed security relationship between the organization and the identified malicious actor without disclosing unverified incident details. This entry supports threat analysts in mapping ransomware exposure across critical infrastructure sectors and geographic regions. Neutral documentation ensures transparency while adhering to strict constraints on unconfirmed claims. |
||||||
| Ransomware | Cold Front Distribution id32642 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and related operational infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was impacted, underscoring vulnerabilities within retail and e-commerce environments. The listing emphasizes the need for defenders to monitor related indicators, understand actor TTPs, and strengthen resilience against evolving ransomware campaigns targeting commercial sectors. No specific incident details, such as stolen data categories or financial demands, are included to maintain factual neutrality and avoid speculative claims. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector. The domain name and sector context indicate an organization serving freight, passenger movement, or supply-chain logistics functions. As cataloged in this threat-intelligence index, coldfrontdist.com is listed as a ransomware victim associated with threat actor interlock. This listing reflects the entity's relationship to the identified threat actor within the ransomware incident profile. No confirmed stolen-data details, record counts, ransom amounts, or specific breach claims are included in this description. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity identified within threat-intelligence indexing frameworks. The domain is cataloged specifically as a ransomware victim associated with the threat actor interlock, reflecting its role in documented cyber incident tracking. This listing type signifies that the entity was impacted by ransomware activity connected to interlock's operational patterns, contributing to broader awareness of retail and e-commerce security vulnerabilities. The description adheres strictly to verified indexing data without extrapolating beyond confirmed associations, maintaining neutrality while contextualizing the entity's presence in cybersecurity intelligence resources. Such catalog entries support proactive defense planning for organizations in similar sectors facing evolving ransomware threats. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and related services to consumers and businesses. As a designated ransomware victim within this threat-intelligence index, the entity is associated with the threat actor Interlock, indicating its involvement in a cyber incident targeting retail infrastructure. The listing type identifies ColdFrontDist.com specifically as a ransomware victim connected to Interlock's activity. This catalog entry serves to document the relationship between the entity, its operational sector, the associated threat actor, and the nature of the incident for cybersecurity analysis and awareness purposes. The description remains factual and neutral regarding the event. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing distribution and commerce-related services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's status within the ransomware incident database linked to interlock, contextualized by its geographic and industry positioning. No specific incident details, such as stolen data, ransom terms, or confirmed breach metrics, are included per strict factual boundaries. This entry serves as a neutral reference point for threat analysts tracking retail and e-commerce exposure. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, serving entities involved in freight movement, passenger transit coordination, and supply chain connectivity. The domain and associated entity are cataloged as a ransomware victim within the threat-intelligence index, specifically tied to the threat actor interlock. This listing provides neutral context for security professionals assessing ransomware exposure across critical logistics infrastructure. No specific incident details such as stolen data, ransom demands, or breach confirmation are included, preserving factual accuracy while documenting the association. |
||||||
| Ransomware | Cold Front Distribution id32645 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. The entity has been cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor identified as interlock. This listing type indicates that ColdFrontDist.com was affected by ransomware activity linked to interlock, contributing to the broader analysis of cyber threats targeting retail and e-commerce environments. The description remains factual and neutral, focusing on the entity's sector, geographic location, and its documented association with the specified threat actor without elaborating on unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32646 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution-related services. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, with the associated threat actor and source identified as interlock. This listing reflects the cybersecurity context in which ColdFrontDist.com was documented, emphasizing its sector exposure to cyber incidents and its association with the interlock threat actor profile. No specific incident details, breach confirmations, data claims, or operational specifics are included here, maintaining factual neutrality. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32646 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and is based in the United States. The entity functions as a commercial service provider within this industry, with its digital infrastructure potentially targeted by cyber threats. It has been formally cataloged in this threat-intelligence index under the designation of ransomware victim, specifically linked to the threat actor interlock. This listing reflects the entity's documented association with this threat actor within cybersecurity intelligence records. No specific incident details, such as data stolen or ransom demands, are included here, adhering strictly to verified index information. |
||||||
| Ransomware | Cold Front Distribution id32649 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector. The domain is cataloged as a ransomware victim within the threat-intelligence index, with its associated threat actor identified as interlock. The listing type reflects the entity's documented relationship to this cyber threat actor and its classification as a compromised or affected organization within the index. No specific technical details, data exfiltration scope, ransom terms, or confirmed breach metrics are provided in this entry. This description maintains a neutral, authoritative stance aligned with threat-intelligence catalog standards. |
||||||
| Ransomware | Cold Front Distribution id32649 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. As cataloged in this threat-intelligence index, the entity is listed as a ransomware victim associated with threat actor interlock. The entry reflects the organization's exposure profile within a critical operational sector where ransomware incidents can disrupt logistics networks and service continuity. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. This listing serves cybersecurity analysts tracking ransomware activity and threat actor propagation across vulnerable sectors. |
||||||
| Ransomware | Cold Front Distribution id32650 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, delivering digital commerce and operational services to customers and partners. This entity is cataloged within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects observed cyber activity targeting this organization's infrastructure, without disclosing specific stolen data, ransom terms, or confirmed breach details. ColdFrontDist.com represents a case study for retail and e-commerce cybersecurity resilience amid evolving ransomware campaigns. This neutral record documents the association for threat-intelligence researchers and security professionals monitoring retail sector exposure. |
||||||
| Ransomware | Cold Front Distribution id32650 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. As part of this threat-intelligence index, the entity is cataloged as a ransomware victim associated with the threat actor interlock. The listing reflects observed security intelligence concerning this organization's exposure within the cybersecurity landscape. This description remains neutral, focusing on verified catalog metadata without asserting unconfirmed breach details, data impacts, or operational consequences. The classification supports threat analysts tracking ransomware activity across critical infrastructure sectors. |
||||||
| Ransomware | Cold Front Distribution id32651 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects the cybersecurity context surrounding the organization's exposure to this threat actor's activity without disclosing unverified incident details. This entry serves to document the relationship between the entity, its operational sector, and the associated threat actor for analytical and defensive reference. |
||||||
| Ransomware | Cold Front Distribution id32651 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. It is cataloged as a ransomware victim entity within the threat-intelligence index, specifically associated with the threat actor Interlock. The listing reflects observed threat activity targeting organizations in this sector, without disclosing confirmed breach specifics such as data stolen, affected systems, or ransom terms. This entry serves threat analysts to contextualize attack patterns, source attribution, and sector exposure for retail and e-commerce environments. The description remains neutral and factual, relying solely on verified index associations and publicly available entity metadata. |
||||||
| Ransomware | Cold Front Distribution id32656 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects cybersecurity intelligence compiled for monitoring adversary activity and sector-specific risk exposure across critical infrastructure domains. No incident specifics, such as stolen data details, breach confirmations, or financial impact, are included per strict factual disclosure guidelines. This entry serves catalog and analytical purposes for threat-aware stakeholders evaluating ransomware exposure in logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32656 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. It is cataloged as a ransomware victim entity within the threat-intelligence index, with the associated threat actor and source identified as interlock. The listing type indicates that this entity was impacted by ransomware activity connected to interlock, reflecting its exposure within the retail technology environment. This entry serves to document the relationship between the entity, its operational sector, the threat actor involved, and the nature of the incident for analytical and defensive purposes. |
||||||
| Ransomware | Cold Front Distribution id32658 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the US Retail and E-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the interlock threat actor group. The listing reflects observed cyber-threat intelligence data concerning this organization's exposure within the retail technology environment. This catalog entry serves to inform security professionals, compliance teams, and stakeholders monitoring ransomware incidents across commercial sectors in the United States. The designation remains neutral and factual, noting the association without extrapolating beyond verified intelligence. |
||||||
| Ransomware | Cold Front Distribution id32658 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing infrastructure. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the interlock threat actor group. The listing reflects observed cybersecurity intelligence correlating the domain and organization with malicious activity targeting retail and e-commerce environments. No specific breach details, data exfiltration metrics, ransom terms, or confirmed incident specifics are included in this catalog entry, preserving factual neutrality while acknowledging the association. This record supports threat analysts monitoring retail and e-commerce sector vulnerabilities and attacker campaigns. |
||||||
| Ransomware | Cold Front Distribution id32659 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and related business infrastructure. As documented in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security event correlation and contextual intelligence regarding the organization's exposure profile within cyber threat datasets. No specific incident details such as data stolen, ransom demands, or confirmed breach metrics are included here, preserving factual neutrality per catalog standards. This entry serves to inform defenders and analysts about the entity's role in the interlock threat actor's activity landscape. |
||||||
| Ransomware | Cold Front Distribution id32659 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution-related services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing reflects observed security-incident attribution and sector context rather than confirmed breach details, data exfiltration specifics, or financial impact. This entry supports threat-intelligence researchers and defenders monitoring retail and e-commerce environments for actor-associated risk indicators and victim profiles. Neutral documentation focuses on the entity's sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32660 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce infrastructure and related services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity attribution and sector exposure without disclosing unverified incident details such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This entry serves threat analysts and security teams monitoring retail and e-commerce environments for actor-linked ransomware activity. Neutral documentation supports risk assessment and intelligence correlation across the affected sector. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing platforms. As a ransomware victim indexed in the threat-intelligence catalog, this entity is associated with the threat actor interlock. The listing type identifies ColdFrontDist.com as a compromised organization targeted by malicious cyber activity. This entry contributes contextual data for security analysts monitoring retail and e-commerce threats, threat actor campaigns, and potential victim patterns. The description remains factual and neutral, reflecting the verified association without speculating on unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing commerce-related services under its domain name. As cataloged in the threat-intelligence index, it is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies the entity's role following a cyber incident associated with this actor, reflecting observed threat-intelligence linkage rather than confirmed breach details. This entry serves catalog and analytical purposes by documenting the entity's sector, geographic context, and association with interlock within the ransomware victim index. No specific incident metrics, data exfiltration claims, or ransom terms are stated here to maintain factual neutrality. |
||||||
| Ransomware | Cold Front Distribution id32664 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the United States retail and e-commerce sectors, functioning as a commercial entity referenced in threat-intelligence databases. The domain https:coldfrontdist.com is cataloged specifically as a ransomware victim, with the associated threat actor identified as interlock. This listing type indicates the entity's status within cybersecurity monitoring frameworks, highlighting its connection to a documented cyber threat campaign targeting retail and online commerce environments. The entry provides neutral context for analysts tracking ransomware activity and threat actor attribution across critical business sectors without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents a US-based Retail and E-commerce organization cataloged within this threat-intelligence index under the ransomware victim listing type. The entity operates within digital commerce sectors where cyber threats pose significant operational and financial risk. Its inclusion reflects verified intelligence associating the organization with threat actor interlock, providing context for security professionals monitoring retail infrastructure threats. This entry serves as a reference point for understanding ransomware targeting patterns in US e-commerce environments. The description remains factual and neutral, focusing solely on the indexed classification without extrapolating unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects verified intelligence linking the domain and organizational profile to malicious activity targeting retail and e-commerce environments. This entry supports security teams in monitoring adversary campaigns, assessing sector-wide exposure, and contextualizing incident patterns for defensive prioritization. All details remain strictly confined to the confirmed classification and associated attribution without extrapolation of unverified incident specifics. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. The entity is cataloged in threat-intelligence databases as a ransomware victim associated with the Interlock threat actor. This listing type indicates its connection to ransomware activity within the monitored threat landscape, reflecting cybersecurity risk exposure in the retail and e-commerce domain. The description focuses on the entity's sector, geographic location, and its documented association with Interlock without speculating on breach details. ColdFrontDist.com serves as an indexed reference for threat analysts assessing ransomware incidents in US retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is associated with the US-based Transportation, Travel, and Logistics sector, operating within a domain context relevant to freight, passenger movement, and supply chain coordination. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to threat actor interlock. The listing type identifies coldfrontdist.com as an organization affected by ransomware activity within its operational sector, reflecting potential operational and continuity risks common to transportation and logistics environments. This description relies on publicly available entity classification and sector context without asserting unconfirmed breach details, data exfiltration specifics, ransom terms, or incident chronology. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in the threat-intelligence index as a ransomware victim linked to the threat actor interlock. This listing type indicates observed cyber incident activity within its operational environment, contributing contextual data for threat tracking and sector-focused risk assessment. The description remains factual and neutral, focusing on verified metadata including sector classification, geographic origin, and the specific ransomware victim designation tied to interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the cybersecurity posture and incident classification of the organization without disclosing unconfirmed breach specifics, data exfiltration details, or operational impact metrics. Coldfrontdist.com serves as a reference point for monitoring threat actor interlock activity within critical retail and e-commerce environments. This neutral description adheres to factual reporting standards for threat-intelligence catalog entries. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility workflows. As a ransomware victim listed in this threat-intelligence index, the entity is documented alongside threat actor interlock for analytical and defensive reference. This listing reflects observed cybersecurity event associations and does not confirm specific incident details such as stolen data, affected systems, financial impact, or breach validation. The catalog entry supports threat-aware decision-making by contextualizing the organization within known ransomware activity and sector-relevant cyber risks. Authorities and defenders may use this neutral record to assess exposure patterns and refine protective measures across logistics networks. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The domain and associated entity are indexed as a ransomware victim connected to the threat actor interlock. This listing type identifies the entity within a threat-intelligence framework focused on cyber incidents affecting critical operational sectors. The description reflects the entity's sector profile, geographic origin, and confirmed association with interlock without disclosing unverified incident details. Neutral cataloging supports threat analysts, security teams, and compliance stakeholders in monitoring ransomware exposure across logistics-focused organizations. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. This designation reflects its inclusion in intelligence records concerning cyber activity targeting retail and e-commerce environments. The description remains factual and neutral, focusing on the entity's sector, geographic context, and verified association without speculating on unconfirmed incident details. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32666 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and serves the United States market. The entity is documented within this threat-intelligence index under the listing type ransomware victim, with its associated threat actor and source identified as interlock. This classification reflects observed cybersecurity intelligence linking the domain to malicious activity targeting retail and online commerce environments. The entry provides neutral context for analysts tracking ransomware campaigns and their impact across specific sectors and geographies. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32667 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity referenced within a threat-intelligence index as a ransomware victim. The domain name and sector context align with business environments commonly targeted by cyber threats, where retail and e-commerce organizations face elevated risks from ransomware campaigns. This listing type identifies the entity as associated with the threat actor interlock, reflecting its inclusion in intelligence records documenting adversary activity and affected organizations. The description remains factual and neutral, focusing on the entity's classification, operational context, and verified association without speculating on unconfirmed incident details such as data exposure, financial impact, or specific breach mechanics. |
||||||
| Ransomware | Cold Front Distribution id32667 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, focusing on freight movement, supply chain coordination, and passenger transit services. The domain serves as a reference point within threat-intelligence indexing, cataloging entities impacted by cyber incidents. As a ransomware victim associated with the threat actor interlock, coldfrontdist.com represents a case study for monitoring adversary activity across critical infrastructure-adjacent industries. This entry supports security teams in understanding sector-specific exposure and evolving threat patterns without disclosing unverified incident details. The listing type confirms its status as a ransomware victim tied to interlock. |
||||||
| Ransomware | Cold Front Distribution id32668 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger transit coordination, and supply chain connectivity. The entity is cataloged within a threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects cybersecurity intelligence assessment of the organization's exposure profile without disclosing confirmed breach details, data exfiltration specifics, ransom terms, or operational impact. The designation supports threat-aware monitoring of entities within critical infrastructure-adjacent sectors where ransomware activity can disrupt service continuity and operational resilience. |
||||||
| Ransomware | Cold Front Distribution id32669 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. As part of a threat-intelligence index, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The catalog entry reflects observed cybersecurity incident linkage without disclosing unverified details such as stolen data, ransom terms, or confirmed breach specifics. This description serves to document the entity's sector profile, geographic context, listing classification, and associated threat actor for analytical and defensive reference. Neutral treatment ensures factual accuracy while supporting security professionals in tracking ransomware-related activity across critical logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32670 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and customer-facing services. The entity is cataloged in this threat-intelligence index under the designation ransomware victim, linked to the threat actor interlock. The listing reflects observed cybersecurity intelligence concerning this organization's exposure profile within the interlock threat landscape. This entry serves defenders and analysts seeking context on retail and e-commerce environments targeted by interlock-affiliated activity. No specific incident details, such as data stolen or ransom demands, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Cold Front Distribution id32671 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with freight coordination, passenger movement, and supply chain connectivity. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's exposure within this cybersecurity context without disclosing unverified incident details such as data stolen, system impact, or ransom terms. This record serves to index the organization's relationship to the identified threat actor and its sector relevance for threat-aware monitoring. The designation remains neutral and factual, documenting the association without extrapolating beyond confirmed intelligence. |
||||||
| Ransomware | Cold Front Distribution id32671 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor Interlock. This listing type indicates the entity was identified in relation to ransomware activity and its cybersecurity implications for retail and e-commerce environments. The description avoids speculative claims regarding data stolen, ransom demands, or confirmed breach details, focusing instead on the verified association and sector context. ColdFrontDist.com serves as a reference point for threat actors, defenders, and analysts monitoring ransomware patterns across US retail and e-commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32673 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records correlating organizational exposure with identified cyber threat activity in its operational domain. The description adheres to neutral, encyclopedic standards without asserting unconfirmed breach details, data specifics, or financial impact. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32674 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and associated online services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim, with the associated threat actor identified as interlock. The listing reflects the cybersecurity context surrounding this organization's exposure to ransomware activity within its operational domain. This entry serves to inform security analysts and defenders about the entity's profile, sector relevance, geographic location, and the specific threat actor connection documented in the index. No additional incident details, such as data breach specifics or financial impact, are included per strict factual constraints. |
||||||
| Ransomware | Cold Front Distribution id32675 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services to customers and partners. As cataloged in threat-intelligence databases, the entity is classified as a ransomware victim linked to the Interlock threat actor group. This designation reflects its inclusion in cybersecurity intelligence records documenting malicious activity targeting retail and e-commerce environments. The entry serves as a reference point for analysts assessing infrastructure exposure, sector-specific threat patterns, and associated actor methodologies. No specific incident details, such as data stolen, ransom demands, or confirmed breach metrics, are included per strict factual constraints. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services to customers and partners. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's role within the observed threat landscape without disclosing confirmed incident details, data scope, or operational impact. This entry supports security teams tracking retail sector exposure to coordinated cyber threats and associated ransomware activity. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the interlock threat actor. The designation reflects observed security events impacting its operational environment without disclosing specific technical or data details. This listing serves to contextualize ColdFrontDist.com within broader cyber incident patterns affecting retail infrastructure. The association underscores ongoing risks facing e-commerce platforms targeted by coordinated cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services to customers and partners. It is cataloged in this threat-intelligence index under the ransomware victim designation, with the associated threat actor identified as interlock. The listing reflects observed cyber activity and attribution within the retail/e-commerce threat landscape, contributing contextual data for defenders assessing risk patterns. This description adheres to neutral, factual reporting without speculating on unconfirmed incident details, data impacts, or operational specifics. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, functioning as a digital commerce entity. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing type reflects observed cyber-threat activity targeting organizations within this sector and geographic region. The description focuses on the entity's classification and contextual threat association without disclosing unverified incident details, operational specifics, or unconfirmed breach claims. This entry supports threat-intelligence analysis for security professionals monitoring retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and customer-facing platforms. The domain is cataloged in this threat-intelligence index under the ransomware victim listing type, specifically associated with the threat actor interlock. This classification reflects the entity's exposure profile within the retail and e-commerce environment, where cyber incidents can significantly disrupt operations and customer trust. The entry documents the relationship between coldfrontdist.com and interlock without disclosing unverified technical or operational details of the alleged incident. It serves as a reference point for monitoring threat actor activity and sector-specific vulnerability patterns. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce services and infrastructure relevant to online business operations. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. This listing reflects its documented relationship within the cyber threat landscape without disclosing specific incident details, breach confirmations, stolen data categories, or operational losses. The entry serves to inform security professionals and stakeholders about the entity's exposure profile and its connection to identified malicious activity in the retail technology domain. |
||||||
| Ransomware | Cold Front Distribution id32678 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the US Retail and E-commerce sector, providing digital commerce services and maintaining infrastructure relevant to online business operations. As a ransomware victim associated with threat actor interlock, this entity is cataloged within the threat-intelligence index to document cybersecurity exposure and incident linkage. The listing type identifies coldfrontdist.com specifically as a ransomware victim connected to interlock's activity profile. This entry serves to inform security professionals and stakeholders about the entity's sector, geographic origin, and confirmed association with the specified threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32679 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies ColdFrontDist.com specifically within ransomware incident records tied to interlock's activity. This entry reflects the cybersecurity context surrounding the entity without disclosing unverified incident details. The association underscores interlock's targeting patterns within retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32679 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with supply chain and mobility operations. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context surrounding the organization without disclosing unverified incident details, such as breach confirmation, stolen data, or financial impact. This catalog entry serves to contextualize ColdFrontDist.com within broader ransomware threat analysis for sector-relevant defenders and intelligence consumers. |
||||||
| Ransomware | Cold Front Distribution id32680 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, functioning as a threat-intelligence index entity cataloged under the ransomware victim listing type. The domain is associated with the threat actor interlock, reflecting its inclusion in cyber threat intelligence datasets focused on identifying compromised organizations and attacker attribution. Catalog entries for such entities provide neutral, factual context regarding sector exposure, geographic origin, and incident classification without disclosing unverified technical or operational details. This listing serves cybersecurity professionals by documenting the relationship between the entity, the threat actor, and the retail/e-commerce context in which the incident was assessed. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32682 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. It is cataloged in this threat-intelligence index as a ransomware victim linked to the Interlock threat actor group. The listing reflects observed cyber-threat intelligence associating the entity with this actor's activity within its industry context. No specific incident details, data breach confirmations, or operational losses are stated here, consistent with responsible intelligence reporting standards. This entry supports security teams monitoring retail and e-commerce environments for ransomware-related threats. |
||||||
| Ransomware | Cold Front Distribution id32682 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain appears in the threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This listing reflects cybersecurity intelligence compiled to document entity exposure and adversary linkage without asserting unverified incident details. The catalog entry supports researchers and defenders assessing sector-specific ransomware risks and actor-related activity across critical infrastructure domains. ColdFrontDist.com remains cataloged neutrally as a ransomware victim connected to interlock within this intelligence index. |
||||||
| Ransomware | Cold Front Distribution id32682 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight coordination, passenger movement, and supply chain logistics workflows. As cataloged in the threat-intelligence index under the ransomware victim listing type, this entity represents an organization impacted by cyber activity linked to the interlock threat actor group. The entry documents the association without disclosing unverified details such as data stolen, ransom demands, or confirmed breach specifics. This neutral listing supports cybersecurity professionals, compliance teams, and sector-focused defenders in monitoring ransomware incidents across critical transportation and logistics environments. ColdFrontDist.com remains identified as a ransomware victim tied to interlock within the index. |
||||||
| Ransomware | Cold Front Distribution id32682 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the US Retail and E-commerce sectors, providing digital commerce and retail-related services. The entity is cataloged as a ransomware victim within this threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects the cybersecurity context surrounding the organization's exposure to ransomware activity. The description remains factual and neutral, focusing on the entity's sector, geographic location, listing classification, and the attributed threat actor without elaborating on unverified incident details. The inclusion underscores the importance of monitoring ransomware-affected retail and e-commerce entities in cyber threat intelligence. |
||||||
| Ransomware | Cold Front Distribution id32683 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sector, identified in the threat-intelligence index under the ransomware victim listing type. The domain name and sector profile indicate commercial digital operations relevant to retail workflows, customer data handling, and e-commerce transaction infrastructure. It is associated with the threat actor Interlock, a group referenced in cyber threat intelligence for ransomware-related activity. This entry documents the entity's classification and contextual linkage without asserting unverified breach details, data exfiltration specifics, or financial impact. ColdFrontDist.com was listed as a ransomware victim associated with Interlock. |
||||||
| Ransomware | Cold Front Distribution id32683 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The domain is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed cyber threat activity targeting entities in this operational sector, without disclosing confirmed breach details, data exfiltration specifics, or financial impact. The entry serves to document the entity's exposure profile within the interlock threat actor's activity footprint for security monitoring and risk assessment purposes. |
||||||
| Ransomware | Cold Front Distribution id32683 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity exposed to cyber threats. As cataloged in this threat-intelligence index, it is designated as a ransomware victim associated with the threat actor interlock. The entity's inclusion reflects observed connections between interlock activity and retail/e-commerce infrastructure, highlighting sector-specific vulnerability patterns. This listing serves to document the relationship without disclosing unverified incident details, maintaining factual neutrality regarding operational context and threat associations. |
||||||
| Ransomware | Cold Front Distribution id32683 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in threat-intelligence indexes, this entity is identified as a ransomware victim linked to the interlock threat actor group. The designation reflects observed security incidents affecting its operational environment without disclosing unverified technical or financial details. This listing supports cybersecurity analysts in tracking adversary-targeted sectors and infrastructure patterns across global commerce networks. Neutral documentation ensures factual accuracy while maintaining relevance for defensive intelligence workflows. |
||||||
| Ransomware | Cold Front Distribution id32687 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is an entity operating within the United States in the Transportation, Travel, and Logistics sector. Its domain and operational context align with organizations handling critical supply chain and mobility services. It has been cataloged within this threat-intelligence index under the listing type ransomware victim, associated with threat actor interlock. The description reflects the entity's sector profile and its inclusion in intelligence records concerning cyber incidents. No specific breach details, data compromises, or confirmed attack elements are asserted here. |
||||||
| Ransomware | Cold Front Distribution id32690 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector. The domain functions as an identifier for an organization cataloged as a ransomware victim within a threat-intelligence index. Its association with the threat actor interlock reflects its inclusion in records documenting cyber incidents affecting retail and e-commerce environments. This listing provides neutral, factual context for security professionals monitoring ransomware activity across commercial sectors. No specific incident details, breach confirmations, data losses, or financial impacts are asserted in this description. |
||||||
| Ransomware | Cold Front Distribution id32692 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the US retail and e-commerce sector and is cataloged as a ransomware victim within the threat-intelligence index. Its domain and operational context align with commercial commerce environments where cyber incidents can disrupt customer transactions, inventory systems, and digital storefront operations. The listing associates this entity with threat actor interlock, reflecting its inclusion in intelligence records tied to this adversary group. This description focuses on verified index metadata and sector context without asserting unconfirmed breach details, data scope, or financial impact. Coldfront Dist. serves as a reference point for monitoring ransomware activity across retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32696 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a commerce-focused entity indexed within a threat-intelligence catalog. The domain and associated profile are categorized as a ransomware victim, with the primary threat actor or source identified as interlock. This listing type indicates the entity was recognized within intelligence records as a target or affected party connected to interlock’s activity. The description avoids speculative details regarding data exposure, ransom terms, or incident specifics, maintaining a neutral and factual posture consistent with threat-intelligence documentation standards. Coldfrontdist.com remains cataloged as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32698 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents an organization operating within the United States transportation, travel, and logistics sector. The domain and associated entity are cataloged as a ransomware victim within the threat-intelligence index, with the affiliated threat actor identified as interlock. This listing type indicates that the entity was affected by ransomware activity associated with interlock, without disclosing confirmed technical details such as stolen data, record counts, ransom amounts, or specific breach evidence. The description remains neutral and factual, reflecting the indexed classification and sector context provided by the threat-intelligence source. Coldfrontdist.com serves as a reference point for understanding ransomware impacts within transportation and logistics environments targeted by interlock. |
||||||
| Ransomware | Cold Front Distribution id32703 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity whose infrastructure was impacted by malicious activity. As cataloged in the threat-intelligence index, this entity is classified specifically as a ransomware victim associated with the threat actor interlock. The listing type identifies the relationship between the entity and the identified adversary without disclosing unverified technical details, such as specific data exfiltrated, ransom demands, or confirmed breach scope. This entry serves to document the incident context, sector exposure, geographic origin, and associated threat actor for analytical and defensive reference purposes. Neutral documentation ensures clarity for security professionals monitoring retail and e-commerce environments against evolving cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32704 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States manufacturing and engineering sectors, providing specialized operational services aligned with industrial production and technical engineering workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the Interlock threat actor. The listing reflects observed adversary targeting patterns and sector exposure without disclosing confirmed breach details, data exfiltration specifics, or operational impact metrics. This record supports cybersecurity professionals in monitoring ransomware activity across critical industrial sectors and assessing associated threat actor footprints. The designation remains neutral, documenting the association solely as an index classification. |
||||||
| Ransomware | Cold Front Distribution id32705 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged as a ransomware victim, with its incident context associated with the threat actor interlock. This listing type identifies Coldfrontdist.com within a threat-intelligence index that tracks adversary-targeted organizations and their operational sectors. The description focuses on verified entity attributes and the confirmed threat actor linkage without disclosing unconfirmed incident details such as data stolen, ransom demands, or specific breach timelines. It serves as a neutral reference point for security analysts monitoring retail and e-commerce environments against coordinated cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32706 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing type indicates that interlock's activity resulted in ransomware targeting this specific organization within its industry context. This entry serves to catalog the relationship between the source actor and the affected entity for analytical and defensive reference purposes. No further incident specifics, such as data exfiltration details or financial impact, are included per strict factual boundaries. |
||||||
| Ransomware | Cold Front Distribution id32727 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online business operations. As a ransomware victim entry in the threat-intelligence index, it is associated with the threat actor interlock, reflecting cybersecurity incident classification. The entity description focuses on its sector context, geographic presence, and verified association with the specified threat actor without disclosing unconfirmed breach details. This listing serves catalog and analytical purposes for monitoring retail and e-commerce cybersecurity exposure. |
||||||
| Ransomware | Cold Front Distribution id32728 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services aligned with modern online retail infrastructure. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the interlock threat actor. This listing reflects observed security intelligence concerning its operational environment and the cyber threat landscape affecting retail and e-commerce organizations. The description focuses on factual categorization without asserting unconfirmed breach details, operational specifics, or unverified incident parameters. ColdFrontDist.com serves as a reference point for understanding threat actor targeting patterns within US-based retail and e-commerce contexts. |
||||||
| Ransomware | Cold Front Distribution id32728 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is formally listed within the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity records documenting adversary activity targeting retail and e-commerce environments. The listing type identifies ColdFrontDist.com specifically as a victim entity linked to interlock's ransomware operations. No additional incident specifics, such as data exfiltration details or financial impact, are asserted in this catalog entry. The description maintains factual neutrality regarding the association and sector profile. |
||||||
| Ransomware | Cold Front Distribution id32728 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As a ransomware victim identified in the threat-intelligence index, it is associated with the threat actor interlock. The entity serves as a reference point for understanding cyber incidents affecting retail and e-commerce organizations in the US market. This listing reflects the cybersecurity context surrounding Coldfrontdist.com without disclosing unconfirmed incident details. The association with interlock highlights the evolving landscape of ransomware threats targeting commercial sectors. |
||||||
| Ransomware | Cold Front Distribution id32728 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. The domain and associated entity are cataloged as a ransomware victim within the threat-intelligence index, with the linked threat actor designated as interlock. This listing reflects the entity's association with this cyber threat actor profile and its classification within ransomware incident tracking. No specific breach details, data loss metrics, ransom terms, or confirmed incident specifics are included here, preserving factual neutrality. The entry serves catalog and intelligence purposes for monitoring sector-relevant cyber risks. |
||||||
| Ransomware | Cold Front Distribution id32728 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com identifies a company operating within the US transportation, travel, and logistics sector. Its domain and operational profile align with critical infrastructure services where cyber threats pose significant operational and reputational risk. This entity is cataloged as a ransomware victim associated with the threat actor interlock, reflecting a security incident linked to this adversary group. The listing provides context for threat-intelligence indexing, emphasizing sector exposure and geographic origin without disclosing unverified incident details. Neutral documentation supports analysts assessing ransomware patterns across transportation and logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32729 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector. The entity serves as a commercial service provider focused on freight coordination, supply chain management, and passenger or cargo movement support. As cataloged in threat-intelligence records, ColdFrontDist.com is classified as a ransomware victim associated with the threat actor interlock. This listing reflects its inclusion in cybersecurity monitoring databases documenting adversary activity against sector-relevant organizations. The description adheres to neutral reporting standards, avoiding speculation regarding specific attack vectors, data handling practices, or unverified incident details. Its presence underscores ongoing vigilance for logistics-sector entities facing coordinated cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32729 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, supply chain coordination, and passenger or freight connectivity solutions. The entity is formally listed within this threat-intelligence index as a ransomware victim associated with threat actor interlock. The designation reflects the cybersecurity context in which the organization was identified, emphasizing its operational sector and the cyber threat profile linked to the interlock actor group. No specific incident details, such as data stolen, ransom demands, or breach confirmation metrics, are included to maintain factual neutrality and avoid speculation beyond the index classification. This entry serves catalog and intelligence purposes for monitoring ransomware exposure across critical logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32730 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the Retail and E-commerce sector and serves customers in the United States. The entity is documented within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed security events impacting the organization's digital infrastructure and operational continuity. The catalog entry provides neutral context for defenders assessing risks within retail and e-commerce environments targeted by coordinated cyber threats. No specific breach details, data loss metrics, or ransom terms are included in this description to maintain factual accuracy and neutrality. |
||||||
| Ransomware | Cold Front Distribution id32731 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight coordination, supply chain management, and passenger movement logistics. As a ransomware victim, the entity is cataloged in the threat-intelligence index under association with threat actor interlock, reflecting its exposure within this threat landscape. The listing type identifies Coldfrontdist.com specifically as a ransomware victim linked to interlock. This entry documents the entity’s sector profile, geographic context, and its relationship to the identified threat actor without asserting unverified incident details. The description remains neutral and factual, focused on the entity’s classification within the intelligence index. |
||||||
| Ransomware | Cold Front Distribution id32731 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents a US-based entity within the Retail and E-commerce sector. It is cataloged as a ransomware victim within the threat-intelligence index, with its associated threat actor and source identified as interlock. The entity reflects cybersecurity exposure within commercial digital operations, highlighting vulnerabilities relevant to retail infrastructure and online commerce environments. This listing provides neutral context for threat analysts tracking ransomware incidents across sectors and geographic regions. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32731 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services relevant to online consumer markets. The entity is cataloged in this threat-intelligence index under the ransomware victim listing type, associated with the threat actor interlock. This designation reflects inclusion within an analytical framework tracking cybersecurity incidents and adversary activity across targeted sectors and geographies. No specific incident details, such as data stolen, records accessed, ransom demands, or confirmed breach evidence, are provided here to maintain factual neutrality and avoid speculation. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32731 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The domain is cataloged as a ransomware victim within a threat-intelligence index, with its associated threat actor and source identified as interlock. This listing reflects cybersecurity monitoring efforts documenting adversary activity and victim profiles across critical infrastructure sectors. No specific incident details, such as data stolen, ransom terms, or confirmed breach evidence, are included to maintain factual neutrality. The entry serves as a reference point for threat actors, defenders, and intelligence consumers analyzing ransomware exposure in transportation and logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32732 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the US Retail and E-commerce sector, providing digital commerce services and infrastructure relevant to modern business operations. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim linked to the interlock threat actor group. The listing type identifies ColdFrontDist.com not as an attacker but as an organization affected by cyber incidents, underscoring the importance of tracking victim profiles for defensive intelligence and sector-specific threat analysis. This classification supports cybersecurity professionals in understanding attack patterns within retail and e-commerce environments and refining protective measures against evolving ransomware campaigns. Neutral documentation of this relationship aids in building comprehensive threat landscapes without speculative claims about specific attack details. |
||||||
| Ransomware | Cold Front Distribution id32732 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in threat-intelligence indexes, this entity is classified as a ransomware victim associated with the threat actor Interlock. The listing reflects observed cybersecurity intelligence linking the organization to this adversary group without disclosing specific incident details. This designation contributes to broader awareness of ransomware targeting retail and e-commerce environments. The entry serves threat analysts and defenders seeking contextual understanding of affected entities within the sector and geographic region. |
||||||
| Ransomware | Cold Front Distribution id32737 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern business operations. As cataloged in this threat-intelligence index, the entity is designated as a ransomware victim linked to the threat actor interlock. The listing type identifies ColdFrontDist.com within incident records where ransomware activity was observed or attributed to interlock, providing context for threat analysts tracking retail sector vulnerabilities. This description reflects the indexed classification without asserting unverified details regarding data exfiltration, operational impact, or specific breach mechanics. The entry serves as a neutral reference point for monitoring cyber threats affecting US-based e-commerce organizations. |
||||||
| Ransomware | Cold Front Distribution id32738 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution-related services. As cataloged in the threat-intelligence index, it is classified as a ransomware victim entity associated with the threat actor interlock. The entity reflects cybersecurity exposure within commerce infrastructure, where ransomware incidents can disrupt operations and customer trust. This listing serves as a reference point for monitoring threat patterns, actor activity, and sector-specific risk indicators in retail technology environments. No specific incident details, data scope, or confirmed breach assertions are included here. |
||||||
| Ransomware | Cold Front Distribution id32742 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce services under that domain. The entity is formally listed within this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization appears, highlighting its exposure to ransomware-related activity without disclosing unverified incident details. The catalog entry emphasizes the entity's sector, geographic location, listing classification, and attributed threat actor for analytical and defensive reference. |
||||||
| Ransomware | Cold Front Distribution id32745 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing domain-related services aligned with supply chain and mobility workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects its role within cybersecurity threat reporting and does not confirm specific incident details, data exfiltration, ransom activity, or operational impact. This designation supports monitoring of ransomware exposure across critical logistics infrastructure and related service providers. |
||||||
| Ransomware | Cold Front Distribution id32746 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the US Retail and E-commerce sector, providing digital commerce and retail-related services under its domain. It is cataloged in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. The entry documents the entity's presence within cybersecurity intelligence records for monitoring retail and e-commerce infrastructure exposure. Specific technical incident details, such as data accessed or operational impact, are intentionally not asserted here to maintain factual neutrality and avoid unverified claims. This listing serves as a structured reference point for analysts tracking ransomware activity and associated threat actor activity across commercial sectors. |
||||||
| Ransomware | Cold Front Distribution id32748 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated infrastructure. The entity has been cataloged in the threat-intelligence index as a ransomware victim, with its association explicitly tied to the threat actor interlock. This listing reflects observed security event linkage rather than confirmed breach details, ensuring neutrality regarding operational impact or data exposure specifics. Understanding such victim profiles aids cybersecurity teams in identifying attack patterns relevant to retail and e-commerce environments. The designation underscores ongoing vigilance required for organizations in this sector against evolving cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32756 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight coordination, supply chain connectivity, and passenger or cargo movement support. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates the entity was identified within threat-intelligence indexing as a target of ransomware activity connected to interlock. The description remains neutral and avoids inventing specific incident details such as stolen data, ransom terms, or confirmed breach metrics. It focuses on the entity's sector profile, geographic context, listing classification, and attributed threat actor. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector. The domain name and associated context indicate an organization serving critical supply chain and mobility services, where operational continuity and data integrity are essential. Within threat-intelligence indexing frameworks, Coldfrontdist.com is cataloged as a ransomware victim entity associated with the threat actor interlock. This classification reflects its inclusion in cybersecurity monitoring databases tracking adversary-targeted organizations across key infrastructure sectors. The description remains neutral regarding specific incident details, as verified facts are limited to the entity's sector, geographic presence, listing classification, and attribution to interlock. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the Retail and E-commerce sector, serving the United States market with digital commerce capabilities. The entity is documented in this threat-intelligence index under the classification of ransomware victim, linked to the threat actor interlock. This listing reflects verified intelligence correlating the domain or organization with malicious activity targeting retail and e-commerce environments. The entry provides neutral context for security professionals assessing ransomware exposure in relevant sectors and geographic regions. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce infrastructure and services. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The designation reflects observed malicious activity targeting commerce environments, without disclosing specific stolen data, operational impacts, or financial losses. This listing serves as a verified indicator for security teams monitoring retail and online business exposures. Understanding such victim profiles aids defenders in recognizing attack patterns and bolstering sector-specific resilience against evolving cyber threats. |
||||||