Ransomware Group intelligence
Interlock
ActiveTrack Interlock with 24841 published victims and 74 known leak locations in a single intelligence view.
Overview
Interlock is tracked by Dark Eye as a ransomware group with 24841 published victims.
United States is currently the most targeted country in this dataset.
74 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 59 88.1%
- Pending 7 10.4%
- Deleted 1 1.5%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (74)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 73 | Onion service | Up checked 3h ago | dcwatuq6kzwj5i2sx7f2cx5hud2ryo3cnm6n6j2r6am57qskfqvdpeqd.onion |
| Leak location 72 | Onion service | Up checked 3h ago | gpotnbhakwdnrcojjnr4msl3sl64a4gv2n4yizvmbsceiazpqq23s5yd.onion |
| Leak location 70 | Onion service | Up checked 3h ago | mfrgymzi6w34lmxojf7hgteoskqo6j5zelunqh3dwxcmz7bbacqzwcad.onion |
| Leak location 71 | Onion service | Up checked 3h ago | 2nv4huuzjbsqncvuepdmwneo6l4ocgtxzcgdau7obcvaqebkssfpz2ad.onion |
| Leak location 69 | Onion service | Up checked 3h ago | sq5gowklqcw4uqwzdsebnpxaynffzctjs6r5mmzzpn6jn76au7qwexid.onion |
| Leak location 68 | Onion service | Up checked 3h ago | xkqqpb46vk7appesxtmotbrweogkux6gheyonqpk2dxbuqetgt3cvrad.onion |
| Leak location 66 | Onion service | Up checked 3h ago | y2yplioc7ybrun2qb4opyc2vdt6lqtxvag3rocayyv2ekbtoa7kjo3qd.onion |
| Leak location 67 | Onion service | Up checked 3h ago | 5igtvs225ikh2svqvf7zkanyica5jz5p5db44fg2rwj7ifyjipvyimid.onion |
| Leak location 64 | Onion service | Up checked 3h ago | 2gvprypcd3wemjghnnassqtro7nwhocr5ry4bngx7x7xhks7f7oillqd.onion |
| Leak location 65 | Onion service | Up checked 3h ago | 6p6fubv4udi7kzgh4jojcplujeogmacclxmskfb3y6bknkh7zh7hohyd.onion |
| Leak location 60 | Onion service | Up checked 3h ago | xyaaupqnht5foymeilb67uv5ljjod5o3uyq62llldv4r4jiqxj2nhoqd.onion |
| Leak location 63 | Onion service | Up checked 3h ago | zd4caqa225s2rs2nhst4y5nkt575ohdpfm6zwy6mug6js3izseli24qd.onion |
| Leak location 62 | Onion service | Up checked 3h ago | t26owzk2773mecpebt4l2eztx6lvn5642fn7annaynq7vwvb6wonkrid.onion |
| Leak location 61 | Onion service | Up checked 3h ago | 3kiwpavmpi2eyc2d4cbggo6s4fnodqzlhxirudruptvjx32wlxxzn6ad.onion |
| Leak location 58 | Onion service | Up checked 3h ago | nh2kwgilfzi5mngiiqtcuoueh2oy4dkjq5cnfnjymueoj654fi7qtpid.onion |
| Leak location 59 | Onion service | Up checked 3h ago | pal3f65j4qj7b2hz2mlmimu4vhl4wz7sfdlvp3g2ry3qwk5nc6pbakid.onion |
| Leak location 57 | Onion service | Up checked 3h ago | ixybueqla5otlp5qfud5bcri2qoyxxhujwtrae5dkxnuo2eof3oliiyd.onion |
| Leak location 54 | Onion service | Up checked 3h ago | awlcpawkphkrrhg6jhwoz5nnrhzz5kfwq2tuzmteyrosgfcpbkisarqd.onion |
| Leak location 51 | Onion service | Up checked 3h ago | 3cpc3v57l7rstjtaelxgnlrzsolz7pd6ltsygjo2tjuonxteyaba2pid.onion |
| Leak location 53 | Onion service | Up checked 3h ago | ex55if4jgsdyi6do4gtyzpishq2tvwatjrhoclqcihxcsipam3uxrryd.onion |
| Leak location 50 | Onion service | Up checked 3h ago | efs3fkrjyvqsk7nugzteelo5i5jxoch5ziqhf37dzmmlmzzlymhawmid.onion |
| Leak location 45 | Onion service | Up checked 3h ago | x2ol75zago3z2nrp7lnmbcwoq3okiexuwi456oe6jqurbprg6lljz3yd.onion |
| Leak location 43 | Onion service | Up checked 3h ago | f53mekzwvscxejfqxtikrzcmqnd3bt5i4d7odvh62sir7eqhdwwjntad.onion |
| Leak location 1 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 2 | Onion service | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion |
| Leak location 52 | Web location | Up checked 4h ago | ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/leaks.php |
| Leak location 74 | Onion service | Down checked 3h ago | 4xhhhpooioaz4cre2lmxowbxqvczotik4qqk7nh4wgtxripqj4urdzqd.onion |
| Leak location 56 | Onion service | Down checked 3h ago | pcixe2pw5ho6qpkjwbrsscvdcpzfj7vt3stvyde5ii5wdlqgvtyr4vad.onion |
| Leak location 55 | Onion service | Down checked 3h ago | k6aw4if6phmqcdp5wzfdjfb3plmybzpkcssmgvv5nltv23tndvh4ewid.onion |
| Leak location 49 | Onion service | Down checked 3h ago | kcykitrgt5sceuap4wrgeqdx53z2kgailaa5a62qxmdl7mbqarfgt3id.onion |
| Leak location 47 | Onion service | Down checked 3h ago | 3ssy6kepkwajapmra262il4tnufgbujf2boz7odgigc3e46dzdqd6wad.onion |
| Leak location 48 | Onion service | Down checked 3h ago | hz7krqig75lgdzl7rtxynw26m3vornjl24ikeyqb5vagbae2iectorqd.onion |
| Leak location 44 | Onion service | Down checked 3h ago | hu5zd7ek6glyoke5kfc4mvt6s3cmia6ebtqptumvbogzdo2vrn5e7bid.onion |
| Leak location 46 | Onion service | Down checked 3h ago | pgjf3dfkamnprahggbw4yojyb7sot3no2glnbfwyzbzqbnaislpv52yd.onion |
| Leak location 42 | Onion service | Down checked 3h ago | c7bgta4watnqu64jnfgp4tzvhfhxgwveqnes65q3mcu4f34xvn7rumad.onion |
| Leak location 41 | Onion service | Down checked 3h ago | efgmr2vxwynrn7vlemidwf4ffwl4vljsb4eusaz3bplwk3apthpkpsad.onion |
| Leak location 40 | Onion service | Down checked 3h ago | 2tlkuy2qn7bfxyvbfpxqaqveoezctbrnk6yvbvin6dueiuk4rdoosyqd.onion |
| Leak location 39 | Onion service | Down checked 3h ago | fbvrolfvadyhigunc5hfw5hextwqn4lvq7d5ieeivcizsxh3avn6dryd.onion |
| Leak location 38 | Onion service | Down checked 3h ago | qfxx5gxyh53a32itguxez6dqcsm3vkrron3nmxhzkn3g64qld5lijoyd.onion |
| Leak location 37 | Onion service | Down checked 3h ago | 24nmjyf6g5otaydjtintzmqv3qme3fnrt62ui2anqdz2hmxnwps4e2ad.onion |
| Leak location 36 | Onion service | Down checked 3h ago | x6obl6pfmqsasvwj72hr22s2mpsdaklwkoa46zk3h7kbkcznu6whdmad.onion |
| Leak location 35 | Onion service | Down checked 3h ago | 3y5p4cq7bke5exre4smsgueqzfwdy7u4z3rp7o3dgxm27lhsx6vqraid.onion |
| Leak location 34 | Onion service | Down checked 3h ago | mpyeixjqjufjki2qg7dutvxk6tjjzv2jf7qc63bljzfqrtbjcdktziqd.onion |
| Leak location 33 | Onion service | Down checked 3h ago | ihbpu7nworzao2klqeeahnz7wcuavltny3p2cmfkhe5tko3vl3zcowyd.onion |
| Leak location 32 | Onion service | Down checked 3h ago | zsjvoqymwx5gdwntsrrk3pvnkfyoxy3knhoxitpdaobxznwc5iwcj4id.onion |
| Leak location 31 | Onion service | Down checked 3h ago | vhs6omcvvqdtmgae5cvpy4jfxfrw2l4b7e64j7fn7xeaqeppzab67oad.onion |
| Leak location 30 | Onion service | Down checked 3h ago | gobj3ph5sj332iithgescrsejiszhaey5l4ffwnou4nwanbcf37phdqd.onion |
| Leak location 29 | Onion service | Down checked 3h ago | hhzt3me6rtxg5rwjbikojbxioosmiprsjrd25ovjhxirx4ocjdwuoqad.onion |
| Leak location 27 | Onion service | Down checked 3h ago | pzbd27cw7pkctovnmfaoeldjf32bc63mwqwhcxcftkqntest2bkkuaid.onion |
| Leak location 28 | Onion service | Down checked 3h ago | glsvddrnd4qu56uhx65mrepgaoer6vtfr6q6qgsbpnml3b3fm2h7lcid.onion |
| Leak location 25 | Onion service | Down checked 3h ago | j76ts5r62mwtfqg6t2po7komao65jzgglaavnvloeltfenazpt57vaad.onion |
| Leak location 26 | Onion service | Down checked 3h ago | wp5yyng6znkcsijil5w4bug7b6uww573ut3czz3amjpfdusnuu4u5kad.onion |
| Leak location 23 | Onion service | Down checked 3h ago | d55ahmrs2mbfcmframropdz4epz3is77ex2fbkbowhrqtxv7knunkxqd.onion |
| Leak location 24 | Onion service | Down checked 3h ago | f4fjja74gn766x5fwxqepl4aa7wyzuu3tj6fllt6oy6j5e27zxwskeid.onion |
| Leak location 21 | Onion service | Down checked 3h ago | viqh6qmehdkpn7jrfhthyejxtg3gd5hg4bch7sjetvkdaipeu3k6anad.onion |
| Leak location 22 | Onion service | Down checked 3h ago | ycgykop5f4te6yaptg57ze75kgnqo6u2e3yyeo3hkjgjxakjx2g5ksqd.onion |
| Leak location 20 | Onion service | Down checked 3h ago | 5s2rv76limdt3eelmoh2vw6xovckjl563tjdifplvyxezdchcyn5xxyd.onion |
| Leak location 19 | Onion service | Down checked 3h ago | u2q76zahlrpgvktr3i2j6o2emzcre67et2kvz43kj2gbrhokc2othqyd.onion |
| Leak location 18 | Onion service | Down checked 3h ago | y3zfr23ubg7zvzdlo2incm55ro2ybtmzth67eklxpxo55aux2jiqpbid.onion |
| Leak location 17 | Onion service | Down checked 3h ago | xqcx7b57dd5vrqllokebwuvub4hk3viktn4lsgyt2bg67oujd42xolqd.onion |
| Leak location 16 | Onion service | Down checked 4h ago | vecdwhichsjnv3x7t5b4o2hk23iwjurmcp2wrwd25jp3smvsth6e6nid.onion |
| Leak location 15 | Onion service | Down checked 4h ago | sogw6fz6swsg42esmor63wj3iijpmoydt7sizwgzf2k6na6nglqt52ad.onion |
| Leak location 13 | Onion service | Down checked 4h ago | ljurl2gqwtgfqzk6pkz5ggtdrdrpzpzzkdvf4jhpkk33dnwkcsmdi4ad.onion |
| Leak location 14 | Onion service | Down checked 4h ago | ph2ilpfayyumhbetpdu6zovwy4vvm7qz3puh7k4zbre7bsf4e4ym5lqd.onion |
| Leak location 12 | Onion service | Down checked 4h ago | k6oor2g5bfvdxhxr2g6fczu3iqldbzyavydk56lh6z7ex7n7wqg4eryd.onion |
| Leak location 11 | Onion service | Down checked 4h ago | ir3oqafizlapipdyrebrfuk5bxd56zqjemljvfkeb42nzpxvkxwmqpqd.onion |
| Leak location 10 | Onion service | Down checked 4h ago | if6cf3llwqht3bs2glotrlsj4ayowc4pipadzbf7bkztln5ykifkjpyd.onion |
| Leak location 9 | Onion service | Down checked 4h ago | ewalffgokvo5x547bygn6c7ne56urhhwrl6q6t34fnryq65qf4oqnoqd.onion |
| Leak location 8 | Onion service | Down checked 4h ago | dnyyuk3nevegj37tnv3xav57c5twomc7uqsfbjlkwto3p4spzfop47qd.onion |
| Leak location 7 | Onion service | Down checked 4h ago | c4xaaynebochyp6ccvxi2bzbvncosdhqcb65cjuqwgqcljlul5gbrhyd.onion |
| Leak location 5 | Onion service | Down checked 4h ago | 6oqw2koek4nbmbb7ic3y4jr6scqsypg5en4h6mcqyrgg3jkny4sgaiyd.onion |
| Leak location 6 | Onion service | Down checked 4h ago | b5yuydwoxorp2qvirovzavbhpj72lcisv5unwblohkb6443u7m2mzuad.onion |
| Leak location 4 | Onion service | Down checked 4h ago | 523gzulwswe5tfevqlrxvqqh2fxo2mwrs2irnjel4mtu7qodgdu2ccyd.onion |
| Leak location 3 | Onion service | Down checked 4h ago | 4k6hj4ash2oo5svymxxrsycex3mdv5dqzom5rlyoojpe6map2lqgmqad.onion |
Top Activity Sectors (15)
- Education 49
- Services 23
- Manufacturing / Engineering 22
- Communication / Marketing 21
- Public Sector 18
- Finance / Legal / Insurance 17
- IT 16
- Healthcare / Pharma 16
- Retail / E-commerce 12
- Construction / Real Estate 11
- Not identified 6
- NGOs / Associations 6
- Agriculture / Food 3
- Hospitality / Food & Beverage / Tourism 2
- Transportation / Travel / Logistics 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Interlock, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
What they do: interlock leverages domain accounts harvested during initial access for persistence and privilege escalation.
What that means: Adversaries may obtain and abuse credentials of a domain account as a means of gaining Initial Access, Persistence, Privilege Escalation, or Defense Evasion.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: interlock exploits public-facing applications to gain initial access to victim networks.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1059.001 PowerShell Execution
What they do: interlock executes malicious commands via PowerShell scripts to stage payloads and evade detection.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: interlock disables or modifies security tools like EDR agents to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1110 Brute Force Credential Access
What they do: interlock performs brute force attacks against user accounts to obtain valid credentials.
What that means: Adversaries may use brute force techniques to gain access to accounts when passwords are unknown or when password hashes are obtained.
-
T1057 Process Discovery Discovery
What they do: interlock uses process discovery to identify critical services and processes for targeting.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: interlock moves laterally through SMB/Windows Admin Shares to access additional systems.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1567.002 Exfiltration to Cloud Storage Exfiltration
What they do: interlock exfiltrates sensitive victim data before deployment to enable double extortion.
What that means: Adversaries may exfiltrate data to a cloud storage service rather than over their primary command and control channel.
-
T1486 Data Encrypted for Impact Impact
What they do: interlock encrypts victim data using custom ransomware binaries to maximize impact.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: interlock inhibits system recovery by destroying Volume Shadow Copies and backup mechanisms.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Tools Observed (17)
▼Software Interlock has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Dark Eye.
Ransom Notes (4)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README__.txt
INTERLOCK - CRITICAL SECURITY ALERT
To Whom It May Concern,
Your organization has experienced a serious security breach. Immediate action is required to mitigate further risks. Here are the details:
THE CURRENT SITUATION
- Your systems have been infiltrated by unauthorized entities.
- Key files have been encrypted and are now inaccessible to you.
- Sensitive data has been extracted and is in our possession.
WHAT YOU NEED TO DO NOW
1. Contact us via our secure, anonymous platform listed below.
2. Follow all instructions to recover your encrypted data.
Access Point: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
Use your unique Company ID: [snip]
DO NOT ATTEMPT:
- File alterations: Renaming, moving, or tampering with files will lead to irreversible damage.
- Third-party software: Using any recovery tools will corrupt the encryption keys, making recovery impossible.
- Reboots or shutdowns: System restarts may cause key damage. Proceed at your own risk.
HOW DID THIS HAPPEN?
We identified vulnerabilities within your network and gained access to critical parts of your infrastructure. The following data categories have been extracted and are now at risk:
- Personal records and client information
- Financial statements, contracts, and legal documents
- Internal communications
- Backups and business-critical files
We hold full copies of these files, and their future is in your hands.
YOUR OPTIONS
#1. Ignore This Warning:
- In 96 hours, we will release or sell your sensitive data.
- Media outlets, regulators, and competitors will be notified.
- Your decryption keys will be destroyed, making recovery impossible.
- The financial and reputational damage could be catastrophic.
#2. Cooperate With Us:
- You will receive the only working decryption tool for your files.
- We will guarantee the secure deletion of all exfiltrated data.
- All traces of this incident will be erased from public and private records.
- A full security audit will be provided to prevent future breaches.
FINAL REMINDER
Failure to act promptly will result in:
- Permanent loss of all encrypted data.
- Leakage of confidential information to the public, competitors, and authorities.
- Irreversible financial harm to your organization.
CONTACT US SECURELY
1. Install the TOR browser via https://torproject.org
2. Visit our anonymous contact form at http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/support/step.php
3. Use your unique Company ID: [snip]
4. Review a sample of your compromised data for verification.
5. Use a VPN if TOR is restricted in your area.
!!!OPEN_ME!!!.txt
Action Required: Data Breach Notification Your Data Is Now Beyond Your Control We have taken control of your systems, encrypted your critical files, and extracted sensitive data. This is a pivotal moment for your organization—your actions now will determine the outcome. --- What You Need to Understand Your data security was compromised because of insufficient protection. As a result: 1. All access to important files has been restricted through encryption. 2. We possess confidential business records, personal data, and other critical information. 3. If you do not respond within 72 hours, we will initiate the public release of your data, creating irreversible damage. --- The Risks You Face: Failure to act swiftly puts your organization at risk of: - Legal violations under GDPR, GLBA, CCPA, HIPAA, NYDFS Cybersecurity Regulation, and DPA 2018. - Financial penalties for failing to protect Non-Public Information (NPI). - Reputational harm as clients, partners, and the public lose trust in your ability to safeguard their data. --- What You Must Do Immediately: 1. Initiate Communication: - Access our recovery portal using TOR Browser. - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Visit http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php, using your Organization ID [snip] to start the negotiation process. 2. Alternative Browser Access: - Use Chrome, Edge, or Firefox to open http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] to receive detailed recovery instructions. --- What Happens Next: - If we do not hear from you within 72 hours, your data will be exposed to the public and sold to interested parties. - The ensuing violations of laws such as GDPR and HIPAA will lead to significant penalties, lawsuits, and regulatory scrutiny. --- Your Responsibility: Your organization is fully accountable for protecting the data it collects. By neglecting this responsibility, you have allowed this situation to unfold. Your chance to regain control is limited—act decisively to avoid catastrophic outcomes.
FIRST_READ_ME.txt
Final Warning: Your Data Is at Risk To the Leadership of Your Organization We have encrypted your systems and extracted sensitive information from your network. Your organization's failure to prioritize cybersecurity has left critical data vulnerable, and now, the consequences are at hand. --- What You Need to Know: 1. We have seized key documents, customer information, and confidential business data. 2. Access to these files has been locked with advanced encryption. 3. Responsibility for this breach lies with your organization, as you are obligated by law to protect Non-Public Information (NPI). --- Legal and Financial Risks: If you fail to act within 72 hours, we will begin publishing your data on our leak platforms. The consequences will include: - Violations of laws such as GDPR, HIPAA, CCPA, GLBA, and NYDFS Cybersecurity Regulation. - Severe fines for non-compliance and lawsuits from affected parties. - Long-term reputational damage to your business, leading to client and partner losses. --- Your Actions: To prevent escalation, you must cooperate immediately. 1. Access our Recovery Platform via TOR Browser: - Download TOR from [https://www.torproject.org](https://www.torproject.org). - Open: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php - Use your Organization ID [snip] to create a private negotiation chat. 2. Alternative Access for Regular Browsers: - Open Chrome, Edge, or Firefox. - Navigate to: http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php - Enter your Organization ID [snip] for instructions. --- Important Warning: - Do not attempt self-recovery; it will fail and lead to data corruption. - Avoid engaging third-party negotiators or law enforcement; this will void any possibility of resolution. - Remember, the data we hold could be used by regulators, competitors, or even the media, causing irreparable harm to your business. Time is of the essence. Every hour of inaction increases the likelihood of devastating consequences. Make the right decision secure your future by cooperating with us now.
READ_THIS_ONE_FIRST.txt
We have successfully breached your network, encrypted your files, and obtained highly sensitive data. This is the result of weak cybersecurity on your part. As of now, your access to critical business information has been revoked. The only way to regain control is through cooperation. If you fail to contact us within 72 hours, we will proceed to publish your data to the public, ensuring severe consequences for your organization. By not addressing this matter, you risk violating major laws such as GDPR, GLBA, HIPAA, CCPA, NYDFS Cybersecurity Regulation, and DPA 2018. Such violations can result in massive fines, lawsuits, and irreparable harm to your reputation. It is your organization`s responsibility to protect Non-Public Information (NPI); neglecting this duty has led to this situation. To resolve this issue, visit our secure negotiation portal using the TOR Browser. Download TOR from [https://www.torproject.org](https://www.torproject.org), and access http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion/chat.php. Use your Organization ID [snip] to initiate communication. If you prefer, you can also use standard browsers like Chrome, Edge, or Firefox and go to http://ebhmkoohccl45qesdbvrjqtyro2hmhkmh6vkyfyjjzfllm3ix72aqaid.onion.ly/chat.php, where your ID will allow you to proceed. Do not attempt to recover files on your own or involve third parties, as these actions will void the opportunity to resolve this matter and could lead to permanent data loss. Failure to act will escalate the situation, exposing your data to competitors, regulators, and the media. Your future depends on your decision now-act responsibly before the deadline passes.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (24841)
Search, filter and paginate the victim timeline for Interlock. Showing 3001–3100 of 24841.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern commercial operations. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor Interlock. This designation reflects observed security events tied to Interlock's activity within the affected sector and geographic context. The listing serves as a structured reference point for analysts tracking ransomware incidents, threat actor propagation, and sector-specific vulnerabilities in retail and e-commerce environments. Neutral documentation focuses on verified associations and sector context without extrapolating unconfirmed technical or operational details. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor Interlock. The listing reflects the entity's status within cybersecurity threat reporting frameworks, highlighting exposure to ransomware activity in its operational environment. This entry supports defenders and analysts monitoring retail and e-commerce infrastructure threats, contextualizing the impact of Interlock's campaigns across vulnerable commercial sectors. No specific incident details, such as data stolen or ransom demands, are included per strict factual reporting guidelines. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As documented in the threat-intelligence index, it is classified as a ransomware victim associated with the interlock threat actor. The entity's inclusion reflects observed cybersecurity activity targeting retail and e-commerce infrastructure. This listing serves as an authoritative reference point for analysts tracking adversary campaigns and victim profiles across commercial sectors. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight coordination, supply chain management, and passenger movement support. As a ransomware victim entity indexed in this threat-intelligence catalog, it is associated with the threat actor interlock, reflecting a documented cyber incident within its operational domain. The listing type identifies ColdFrontDist.com specifically as a ransomware victim linked to interlock, contributing contextual intelligence for security professionals monitoring sector-relevant threats. This entry serves as a factual reference point within the threat-intelligence index, emphasizing sector classification, geographic origin, and the verified association with the interlock actor without disclosing unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32758 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sectors, cataloged as a ransomware victim within the threat-intelligence index. Its inclusion reflects observed threat activity linked to the interlock threat actor group. The entity represents a target profile relevant to retail and online commerce infrastructure, where ransomware incidents can disrupt operations and customer trust. This listing serves as a structured reference point for analysts tracking cyber threats, victim profiles, and associated actors across commercial sectors. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated infrastructure. As cataloged in threat-intelligence indexes, this entity is identified as a ransomware victim connected to the threat actor Interlock. The listing type specifically denotes the compromised status of the organization's systems, reflecting the nature of the cyber incident attributed to Interlock's activity. This description adheres to neutral, encyclopedic standards for cataloging security events without disclosing unverified technical or operational details. The designation serves to inform defenders and analysts about associated risks within the retail and e-commerce domain. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
ColdfrontDist.com operates within the United States in the Transportation, Travel, and Logistics sector, providing services aligned with supply chain and mobility operations. The domain is documented in this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This entry reflects cybersecurity intelligence compiled regarding network activity and potential compromise indicators tied to the entity and its operational context. The description remains factual and neutral, focusing on the entity's sector profile and its classification within the ransomware victim index linked to interlock. No specific incident details, such as data stolen or ransom demands, are included per strict factual constraints. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity targeted within threat intelligence indexing. The domain is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing type indicates documented exposure to ransomware activity tied to interlock's operational patterns, reflecting cybersecurity risk assessment for sector-relevant organizations. The description remains factual and neutral, focusing on the entity's classification, geographic context, industry focus, and verified threat linkage without extrapolating unconfirmed incident details. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. The entity is cataloged within this threat-intelligence index as a ransomware victim linked to the Interlock threat actor. This classification reflects observed security events impacting the organization's digital environment and operational continuity. The listing serves to document the association for cybersecurity professionals monitoring retail and e-commerce sector vulnerabilities. No specific incident details, data breach specifics, or confirmed loss metrics are included per strict factual constraints. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and related distribution services. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents affecting retail and e-commerce organizations. The description avoids speculative claims regarding data stolen, ransom demands, or breach confirmation, focusing solely on the verified listing context and sector profile. ColdFrontDist.com serves as a reference point for security teams monitoring ransomware activity across US retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32759 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor and source designated as interlock. This listing reflects cybersecurity monitoring activity concerning entities potentially impacted by ransomware campaigns targeting critical logistics infrastructure. The description remains neutral and avoids speculative details regarding data handling, breach scope, or recovery outcomes. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32763 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with operational continuity and supply-chain connectivity. The domain is referenced in the threat-intelligence index under the classification ransomware victim, associated with the threat actor Interlock. This listing reflects observed threat-intelligence linkage rather than confirmed incident details, preserving neutrality regarding specific compromise evidence. The entity serves as a contextual marker within cybersecurity monitoring for organizations assessing ransomware exposure across critical logistics infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32765 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and movement management workflows. The domain is referenced within a threat-intelligence index as a ransomware victim entity associated with the threat actor interlock. This listing type denotes a confirmed or assessed victim profile in cybersecurity threat databases, reflecting observed or reported malicious activity targeting this sector and entity. The description remains neutral, focusing solely on the entity's sector, geographic context, and its classification within the intelligence catalog without speculating on breach details, data loss, or recovery specifics. Such catalog entries support defenders in identifying patterns and contextualizing incidents across critical infrastructure domains. |
||||||
| Ransomware | Cold Front Distribution id32768 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution-related services. The entity is cataloged as a ransomware victim associated with the INTERLOCK threat actor. This listing reflects its inclusion in a threat-intelligence index documenting cybersecurity incidents and adversary relationships across commercial sectors. No specific breach details, data exfiltration scope, or ransom terms are asserted here, maintaining factual neutrality per catalog standards. The entry serves analysts tracking ransomware campaigns targeting retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32771 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor Interlock. This listing type identifies compromised infrastructure or organizations targeted by ransomware campaigns, contextualized by the entity's sector and geographic location. The entry serves threat analysts to track victim profiles, attacker affiliations, and sector-specific exposure patterns without disclosing unverified incident details. Neutral documentation ensures alignment with cybersecurity intelligence standards and avoids speculation regarding compromised assets or breach specifics. |
||||||
| Ransomware | Cold Front Distribution id32772 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and associated services to customers and partners. It is cataloged within this threat-intelligence index under the designation ransomware victim, with the associated threat actor identified as interlock. This listing reflects observed security-related activity and contextual intelligence surrounding the entity and its connection to the interlock threat actor group. The entry serves as a reference point for monitoring cyber threats affecting retail and e-commerce organizations in the US. |
||||||
| Ransomware | Cold Front Distribution id32772 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is an entity operating within the United States transportation, travel, and logistics sector. Its domain and operational context align with services supporting freight movement, supply chain coordination, and passenger transit logistics. The entity is cataloged as a ransomware victim associated with the threat actor interlock. This listing type indicates a cybersecurity incident where the organization was targeted by interlock’s ransomware activity. The description avoids speculation regarding data stolen, ransom demands, or breach confirmation, focusing strictly on the verified threat-intelligence classification and sector context. |
||||||
| Ransomware | Cold Front Distribution id32775 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The entity is formally listed within this threat-intelligence index as a ransomware victim associated with the interlock threat actor. This classification reflects its inclusion in intelligence records documenting cyber incidents affecting organizations in this operational domain. The designation underscores the sector-specific exposure faced by logistics-focused entities to ransomware campaigns. Coldfrontdist.com remains cataloged for analytical reference regarding threat actor activity and victim impact within transportation networks. |
||||||
| Ransomware | Cold Front Distribution id32775 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and customer-facing services. The domain functions as an entity within a threat-intelligence catalog, specifically categorized as a ransomware victim linked to the threat actor interlock. This listing reflects cybersecurity intelligence compiled from verified sources regarding entity exposure and associated adversarial activity within the retail technology environment. The designation underscores ongoing vigilance required for sector-specific digital infrastructure resilience against ransomware campaigns. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32775 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the United States transportation, travel, and logistics sector. The domain coldfrontdist.com represents an organization whose infrastructure was assessed within threat-intelligence indexing. This listing type identifies coldfrontdist.com as a ransomware victim associated with the threat actor interlock. The description reflects the entity's sector profile and its inclusion in the ransomware victim index tied to interlock, without asserting unverified incident details. This catalog entry supports security teams monitoring cyber threats across critical logistics supply chains. |
||||||
| Ransomware | Cold Front Distribution id32776 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector, based in the United States, and functions as a commercial entity within this industry vertical. It has been cataloged in the threat-intelligence index under the listing type ransomware victim, specifically linked to the threat actor interlock. This designation reflects its documented association within cybersecurity intelligence records concerning ransomware-related activity in the retail and e-commerce context. The entry provides neutral, factual context for researchers and defenders monitoring threat actor campaigns across retail and e-commerce sectors in the US. |
||||||
| Ransomware | Cold Front Distribution id32779 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services to customers and partners. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects the cybersecurity context surrounding the organization's exposure to this specific threat actor's activity within its industry. This record serves to inform stakeholders about the entity's status and the correlated threat landscape affecting retail and e-commerce environments in the US. |
||||||
| Ransomware | Cold Front Distribution id32781 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a domain associated with the US Transportation, Travel, and Logistics sector, operating within digital services relevant to freight movement, passenger connectivity, and supply-chain coordination. As cataloged in the threat-intelligence index, it is listed as a ransomware victim linked to the interlock threat actor group. The entity reflects a cybersecurity context where operational continuity, data integrity, and service availability are critical across transportation networks. This listing serves as an indexed reference point for security teams assessing ransomware exposure within logistics-focused organizations. No specific breach details, stolen data categories, record counts, ransom terms, or confirmed incident specifics are included here, preserving factual neutrality. |
||||||
| Ransomware | Cold Front Distribution id32783 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is identified within the threat-intelligence index as a ransomware victim entity operating in the Retail and E-commerce sector, with operational context tied to the United States. The domain and associated listing represent cybersecurity intelligence concerning compromised systems or organizational exposure within this specific industry vertical. This entry documents the relationship between the entity and threat actor interlock, providing catalog context for defenders, analysts, and security teams monitoring retail and e-commerce threat landscapes. The description remains factual and neutral, focusing solely on the indexed classification without elaborating on unverified incident details such as data accessed, ransom demands, or confirmed breach scope. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services to customers and partners. The entity is cataloged in this threat-intelligence index under the designation of ransomware victim, with its associated threat actor identified as interlock. This listing reflects the cybersecurity community's documentation of the entity's involvement within a threat actor campaign targeting retail and e-commerce infrastructure. The entry serves to inform defenders and analysts about potential exposure vectors and contextual risk factors associated with this organization. It neutrally states that coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. As cataloged in threat-intelligence indexes, this entity is formally listed as a ransomware victim associated with the threat actor interlock. The designation reflects its role within the incident landscape concerning cyber threats targeting commercial online operations. This entry serves to inform security professionals and stakeholders about compromised entities linked to specific adversarial activity in critical business sectors. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the US Retail and E-commerce sector, providing digital commerce services and infrastructure relevant to modern retail operations. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies the relationship between the entity and the associated malicious actor without disclosing confirmed breach specifics, operational impacts, or unverified incident details. This entry serves threat analysts and security professionals seeking structured context on ransomware-related victim profiles within specific sectors and geographic regions. The description adheres to neutral, encyclopedic standards for catalog documentation. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, supply chain coordination, and passenger or cargo logistics management. The domain https:coldfrontdist.com is cataloged as a ransomware victim within the threat-intelligence index, with its association to threat actor interlock documented for analytical context. This listing reflects the entity's classification based on verified intelligence sources and its operational sector, without disclosing unconfirmed breach details, data loss specifics, or financial impact. The record serves to inform stakeholders of cybersecurity exposure patterns relevant to logistics and travel infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, presenting as a ransomware victim within the threat-intelligence index. The entity name and sector context indicate exposure relevant to operational continuity and supply chain resilience concerns across connected logistics networks. As cataloged, Coldfrontdist.com is associated with the threat actor interlock, reflecting the intelligence linkage between the entity and this identified adversary group. This listing type documents the ransomware victim classification without disclosing confirmed breach details, data scope, or operational impact specifics. The entry serves threat-intelligence purposes by anchoring sector context, geographic location, and actor association for analytical review. |
||||||
| Ransomware | Cold Front Distribution id32784 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents an organization operating within the United States transportation, travel, and logistics sector. Its domain and operational profile align with entities serving critical supply chain and mobility functions, making it relevant within threat-intelligence catalogs focused on cyber incidents affecting industrial and service-oriented industries. The entity is cataloged specifically as a ransomware victim associated with the threat actor interlock. This listing type indicates inclusion in a ransomware-victim index tied to interlock's activity, supporting analysts tracking adversary-targeted organizations across key sectors without disclosing unverified incident details. The description remains neutral and factual, reflecting the entity's sector, geographic context, listing classification, and associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, serving as a business entity referenced within a threat-intelligence index. The domain name suggests distribution or commerce functions aligned with its identified sector, though specific operational details are limited in public threat records. As cataloged, ColdFrontDist.com is formally listed as a ransomware victim associated with the threat actor interlock. This designation reflects its inclusion in intelligence datasets tracking cyber incidents, attacker attribution, and affected organizations across critical digital commerce environments. The entry provides neutral context for analysts monitoring retail and e-commerce cybersecurity risks linked to interlock-affiliated activity. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States manufacturing and engineering sectors, providing domain-related services relevant to industrial operations and technical workflows. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim linked to the interlock threat actor. The listing type indicates observed or attributed ransomware activity involving this organization, contextualized by its sector and geographic location. No specific incident details such as stolen data categories, record counts, ransom amounts, or confirmed breach specifics are provided, maintaining factual neutrality. This entry supports cyber-threat-intelligence analysis for manufacturers and engineering firms targeting threat actor interlock activity. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector and is situated in the United States. The domain functions as an entity within this threat-intelligence index, reflecting cybersecurity exposure patterns relevant to digital commerce environments. It has been formally cataloged as a ransomware victim linked to the interlock threat actor group. This listing contributes contextual intelligence for monitoring retail infrastructure threats and associated cybercrime activity. The description remains neutral, focusing solely on the verified classification without extrapolating beyond confirmed index data. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management needs. The domain functions as a business identifier within this operational context, reflecting activities relevant to moving goods and managing transit-related workflows. Within the threat-intelligence index, ColdFrontDist.com is cataloged as a ransomware victim associated with the threat actor interlock. This listing reflects the entity's inclusion in cybersecurity monitoring frameworks focused on identifying compromised organizations and their attacker connections. No specific incident details, such as data exfiltration scope or ransom demands, are provided here, maintaining factual neutrality regarding the threat context. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The domain functions as an online presence for an organization serving this operational area, where cybersecurity resilience is critical for maintaining service continuity and data integrity. Within threat-intelligence indexing frameworks, coldfrontdist.com is cataloged as a ransomware victim entity associated with the threat actor interlock. This classification reflects its inclusion in intelligence records documenting adversary activity targeting sector-specific organizations. The listing type underscores the incident context without disclosing unverified technical or operational details. |
||||||
| Ransomware | Cold Front Distribution id32785 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce solutions and associated services tailored to online business operations. It has been formally cataloged within this threat-intelligence index under the classification ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in intelligence records documenting cyber incidents affecting retail and e-commerce environments. The entity serves as a reference point for analyzing threat patterns, defensive strategies, and sector-specific vulnerability landscapes in modern commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32788 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The entity is cataloged within the threat-intelligence index under the designation ransomware victim, associated with the threat actor interlock. This listing reflects observed threat activity context for organizations operating in critical infrastructure-adjacent sectors. No specific incident details, data breach confirmations, or operational impacts are asserted here, maintaining a neutral and factual perspective consistent with threat-intelligence documentation standards. The entry serves to document the entity's classification and its relationship to the identified threat actor within the index. |
||||||
| Ransomware | Cold Front Distribution id32795 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As a ransomware victim indexed alongside threat actor interlock, this entity is cataloged within the threat-intelligence framework to document attack exposure and contextualize cybersecurity incidents within specific industry boundaries. The listing type identifies ColdFrontDist.com as a ransomware victim linked to interlock, contributing structured intelligence for defenders analyzing actor campaigns and sector-specific vulnerabilities. This description adheres strictly to verified indexing attributes without extrapolating unconfirmed breach details, ensuring factual neutrality for catalog consumption and analytical reference. |
||||||
| Ransomware | Cold Front Distribution id32795 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in the threat-intelligence index, the entity is classified as a ransomware victim associated with threat actor interlock. The listing reflects the entity's role within the incident context without disclosing confirmed breach specifics, data exfiltration details, or operational impact. This entry serves as a neutral reference point for cybersecurity professionals monitoring ransomware activity across critical logistics infrastructure. Further validation of incident details should be drawn from official disclosures where available. |
||||||
| Ransomware | Cold Front Distribution id32798 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. Within the threat-intelligence index, this entity is formally listed as a ransomware victim associated with the interlock threat actor group. The designation reflects observed or attributed cyber activity linking interlock to this sector and geographic context, without confirming specific breach details. Catalog records for such entities support security teams in tracking victimization patterns across retail and e-commerce environments. This entry remains neutral, relying on verified index classification rather than speculative claims about compromised data or operational impact. |
||||||
| Ransomware | Cold Front Distribution id32800 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. As cataloged in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity intelligence linking the organization to this adversary group without disclosing specific technical details, data scope, or confirmed breach elements. This entry supports threat-aware monitoring for sector-relevant entities facing ransomware risks. The designation underscores the vulnerability of logistics infrastructure to coordinated cyber threats. |
||||||
| Ransomware | Cold Front Distribution id32805 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States manufacturing and engineering sector, providing specialized technical and operational services relevant to industrial workflows. As cataloged in the threat-intelligence index, this entity is formally listed as a ransomware victim linked to the interlock threat actor group. The designation reflects observed security events within its operational environment, contributing contextual data for cybersecurity professionals monitoring industrial sectors. This entry supports comprehensive threat-intelligence analysis by documenting victim profiles, associated actors, and sector vulnerabilities without disclosing unverified incident details or speculative claims about compromised assets or data. |
||||||
| Ransomware | Cold Front Distribution id32806 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern commercial operations. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies ColdFrontDist.com specifically within ransomware incident records tied to interlock, contextualizing its exposure within cyber threat activity affecting retail and e-commerce environments. This description adheres to verified intelligence parameters without disclosing unconfirmed incident details such as data stolen, ransom demands, or precise breach timelines. |
||||||
| Ransomware | Cold Front Distribution id32807 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to modern commercial operations. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim associated with the threat actor interlock. The listing reflects observed cybersecurity event data tied to this organization's exposure profile within the retail technology landscape. This entry serves to catalog the incident context for defenders and analysts monitoring retail sector threats. The designation underscores the importance of continuous vigilance for e-commerce platforms facing ransomware campaigns. |
||||||
| Ransomware | Cold Front Distribution id32808 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects the cybersecurity context surrounding the entity's exposure profile and the identified adversary relationship. The catalog entry provides a neutral reference point for threat researchers, security analysts, and sector-focused risk assessments evaluating retail digital infrastructure vulnerabilities. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32808 View details | United States | Retail / E-commerce | leaked | ||
|
https:coldfrontdist.com operates within the United States transportation, travel, and logistics sector. The entity functions as a commercial organization serving transportation and logistics workflows, though specific operational details are not publicly confirmed in available intelligence sources. It has been cataloged in this threat-intelligence index under the ransomware victim listing type, associated with threat actor interlock. This classification reflects threat-intelligence assessment rather than confirmed incident details, and no breach specifics such as data stolen, records affected, ransom demands, or precise timelines are provided here. The listing supports security teams monitoring ransomware exposure across transportation and logistics environments. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated infrastructure. The entity has been cataloged in the threat-intelligence index as a ransomware victim, with its association explicitly tied to the threat actor Interlock. This classification indicates that ColdFrontDist.com experienced a ransomware-related security incident connected to Interlock's activity within its operational environment. The listing type underscores the nature of the threat exposure documented for this organization. Comprehensive analysis of specific incident details remains outside the scope of this catalog entry, adhering to factual and neutral reporting standards. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States Retail and E-commerce sector, functioning as a commercial entity targeted by cyber threats. Publicly available intelligence sources categorize this entity within a threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor interlock. The entity's inclusion reflects observed network activity or incident attribution relevant to retail and e-commerce security landscapes. This listing provides neutral context regarding the entity's status and its connection to the identified threat actor without disclosing unverified incident details. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As cataloged in this threat-intelligence index under the ransomware victim listing type, the entity is associated with threat actor interlock. The entry documents the relationship between ColdFrontDist.com and interlock without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. This neutral overview supports threat analysts in mapping ransomware activity across retail and e-commerce environments in the US. The listing type confirms the ransomware victim designation linked to interlock. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. The domain functions as a commercial entity within this operational context, serving transportation and logistics-related activities. This listing categorizes coldfrontdist.com as a ransomware victim within a threat-intelligence index, with the associated threat actor and source identified as interlock. The description reflects the entity's sector profile, geographic location, and classification without asserting unverified incident details such as data stolen, records compromised, ransom demands, or confirmed breach specifics. It neutrally records the indexed association between coldfrontdist.com and interlock as a ransomware victim. |
||||||
| Ransomware | Cold Front Distribution id32809 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com is associated with the US retail and e-commerce sector and is cataloged as a ransomware victim within this threat-intelligence index. The entity reflects a commercial service operating in online commerce and retail environments where cyber incidents can affect operational continuity and customer trust. Its listing type identifies the relationship between the entity and the threat actor interlock, providing structured context for threat-researchers and security professionals monitoring retail-sector risk patterns. This description relies solely on the provided entity classification, sector, geographic location, and associated actor without asserting unverified details such as breach scope, stolen data, ransom terms, or confirmed impact. It was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with supply chain and mobility infrastructure. The domain is cataloged as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence records for cybersecurity monitoring and risk assessment. This listing type signifies documented exposure relevant to ransomware activity within the entity's operational context. The description remains factual and neutral, focusing on sector alignment, geographic location, and the verified association with interlock without extrapolating unconfirmed incident details. Such entries support defenders in identifying potential attack surfaces across critical logistics networks. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based company operating within the Retail and E-commerce sector. The entity is cataloged as a ransomware victim within the threat-intelligence index, with its association explicitly tied to the threat actor interlock. Publicly available information regarding the specific nature of the incident, operational impact, or confirmed breach details is not independently verifiable through official channels at this time. This listing serves to document the entity's status and its linkage to interlock for analytical and defensive reference. Neutral treatment is maintained throughout this description to align with threat-intelligence catalog standards. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is an entity operating within the United States retail and e-commerce sector, cataloged as a ransomware victim within a threat-intelligence index. The domain name and associated profile indicate business activity aligned with commerce infrastructure, though specific operational details, incident specifics, or confirmed breach evidence are not disclosed here to maintain neutrality and factual accuracy. Its inclusion reflects threat-intelligence analysis linking the entity to the ransomware-associated threat actor interlock, providing context for sector-focused security monitoring and risk assessment. This listing serves as a structured reference point for analysts evaluating retail and e-commerce exposure to coordinated cyber threats in the United States. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector. The domain functions as a commercial entity serving retail and online commerce operations, though specific service details remain limited in publicly available threat-intelligence records. This listing type identifies ColdFrontDist.com as a ransomware victim associated with the threat actor interlock. The entry provides structured context for security analysts monitoring retail sector exposure to coordinated cyber threats. The designation reflects observed threat-intelligence indexing rather than confirmed incident details. It serves as a reference point for understanding interlock activity within US-based e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32810 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and related distribution services. As cataloged in the threat-intelligence index, the entity is identified as a ransomware victim associated with threat actor interlock. The listing type reflects the cybersecurity context in which ColdFrontDist.com was assessed, highlighting exposure to ransomware activity within its operational environment. This description relies solely on the indexed entity classification, sector designation, geographic location, and associated threat actor attribution without adding unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32811 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, delivering services aligned with supply chain and freight management needs. As a ransomware victim, it is cataloged within the threat-intelligence index under association with the interlock threat actor. This listing type indicates cybersecurity exposure relevant to operational continuity and infrastructure resilience across logistics networks. The entity serves as a reference point for monitoring adversary activity in transportation-focused environments. Coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32811 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and related commercial services. The domain is cataloged as a ransomware victim within the threat-intelligence index, with the associated threat actor or source identified as interlock. This listing contextualizes the entity's exposure profile, sector vulnerability, and geographic location for analysts tracking cyber incidents. No specific incident details, such as stolen data categories, record counts, ransom amounts, or confirmed breach evidence, are included, as factual specificity remains limited to the provided classification. The entry serves as a neutral reference point for monitoring threat actor activity and sector-based security trends. |
||||||
| Ransomware | Cold Front Distribution id32812 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and related distribution services. The entity is cataloged within this threat-intelligence index as a ransomware victim, with the associated threat actor identified as interlock. This listing reflects the organization's inclusion in cybersecurity intelligence records documenting ransomware-related incidents and adversary activity. The description focuses on the entity's sector, geographic location, and its classification within the index without disclosing unverified incident details. Such entries support threat analysts in tracking adversary campaigns and understanding vulnerabilities within critical retail and e-commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32812 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. As cataloged in the threat-intelligence index, this entity is designated as a ransomware victim associated with the threat actor interlock. The listing type identifies ColdFrontDist.com specifically as a compromised organization targeted by ransomware activity linked to interlock, underscoring its relevance for cybersecurity defenders tracking retail and e-commerce threats. This entry serves to inform security teams and analysts about affected infrastructure within this sector, supporting proactive defense strategies against evolving cyber threats targeting commerce environments. |
||||||
| Ransomware | Cold Front Distribution id32813 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, functioning as a digital commerce entity. The domain is cataloged within a threat-intelligence index under the designation of ransomware victim, specifically associated with threat actor interlock. This listing serves to document the entity's exposure profile within cybersecurity intelligence frameworks, highlighting its relevance to retail and e-commerce threat monitoring. The entry provides neutral context regarding the entity's sector, geographic location, and its confirmed association with interlock as a ransomware victim, supporting security professionals in tracking and understanding sector-specific threat patterns. |
||||||
| Ransomware | Cold Front Distribution id32814 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. As documented in the threat-intelligence index, this entity is categorized as a ransomware victim linked to the interlock threat actor. The listing type identifies ColdFrontDist.com as an affected organization subject to cyber intrusion activity. This entry contributes contextual intelligence regarding retail and e-commerce infrastructure exposure to ransomware campaigns. The description remains neutral, focusing solely on the entity's classification and associated threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32817 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged in the threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing reflects observed security event linkage rather than confirmed incident details, avoiding speculation regarding data exposure or operational impact. Understanding such victim profiles supports defensive strategies for retail and e-commerce organizations facing evolving cyber threats. The entry underscores the importance of continuous monitoring and intelligence sharing across sectors vulnerable to ransomware campaigns. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. The entity is cataloged as a ransomware victim associated with the threat actor interlock, reflecting its inclusion in threat-intelligence monitoring frameworks. This listing type documents the relationship without disclosing confirmed incident details, operational specifics, or unverified breach claims. The entry serves as a neutral reference point for analysts tracking retail sector cybersecurity exposures and affiliated threat activity. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sectors, providing services aligned with supply chain and freight management workflows. As documented in the threat-intelligence index, this entity is classified as a ransomware victim associated with the threat actor interlock. The listing reflects observed security events impacting this sector-specific organization without disclosing unverified technical details, data scope, or financial impact. This entry serves threat analysts to contextualize ransomware activity within critical logistics infrastructure and supports proactive defense planning for transportation and travel organizations facing similar actor profiles. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services aligned with modern consumer shopping platforms. As a ransomware victim associated with the interlock threat actor, this entity is cataloged within the threat-intelligence index to document exposure patterns and contextual risk factors relevant to cybersecurity monitoring. The listing reflects the entity's status as a compromised or targeted organization within the specified threat actor framework, contributing to broader analysis of retail sector vulnerability. This description maintains factual neutrality regarding the incident details while acknowledging the official association with interlock for catalog purposes. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility infrastructure. The entity is formally listed in this threat-intelligence index as a ransomware victim associated with the threat actor Interlock. This designation reflects the cybersecurity risk profile observed in relation to the organization and its operational environment. The catalog entry serves to inform defenders and analysts about potential exposure within critical logistics networks. No specific incident details, such as data stolen, ransom demands, or breach confirmations, are included here, adhering to factual neutrality. |
||||||
| Ransomware | Cold Front Distribution id32818 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com is a US-based entity operating within the Manufacturing and Engineering sector, providing specialized operational support and technical services relevant to industrial workflows. It is cataloged within this threat-intelligence index under the designation ransomware victim, explicitly associated with the threat actor interlock. The listing reflects verified intelligence linking the entity to this adversary group without disclosing unconfirmed incident details such as data exfiltration scope, ransom terms, or specific breach mechanics. This entry serves threat analysts and security professionals seeking contextual understanding of compromised organizations within critical infrastructure sectors. The designation underscores the importance of monitoring ransomware activity across manufacturing and engineering environments in the United States. |
||||||
| Ransomware | Cold Front Distribution id32820 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the Retail and E-commerce sectors, with its domain referenced as https:coldfrontdist.com. The entity is cataloged in the threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This designation reflects its inclusion in cybersecurity intelligence records documenting ransomware-related incidents affecting retail and e-commerce organizations. The description remains neutral and factual, focusing on the entity's classification, sector context, geographic origin in the United States, and its linkage to the interlock threat actor without speculating on unverified incident details. Coldfront Dist. serves as a reference point within the index for understanding ransomware exposure patterns in targeted sectors. |
||||||
| Ransomware | Cold Front Distribution id32820 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce services. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim associated with the threat actor interlock. The listing type identifies the relationship between the compromised infrastructure and the specified adversary group without disclosing unverified technical details or operational specifics. This record serves to inform security teams about potential exposure vectors within the retail technology landscape. The entry remains strictly descriptive of the affiliation and sector context for analytical purposes. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce and customer-facing services. The entity is cataloged as a ransomware victim associated with threat actor interlock, reflecting its exposure within threat-intelligence records. This listing type documents the relationship between the organization and the identified malicious actor without disclosing unverified incident details. The entry serves as a structured reference for security analysts tracking retail sector threats and ransomware-related activity. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States manufacturing and engineering sectors, providing specialized operational and technical services relevant to industrial workflows. The entity is documented within this threat-intelligence index under the classification of ransomware victim, specifically associated with threat actor interlock. This listing reflects observed security event correlations and intelligence linkages without disclosing unverified incident details such as data exfiltration specifics, ransom demands, or confirmed breach metrics. The catalog entry serves to contextualize the organization's exposure profile alongside the identified threat actor's activity patterns. ColdFrontDist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. It is cataloged in this threat-intelligence index under the designation of ransomware victim, specifically associated with the threat actor Interlock. The listing reflects observed cyber activity targeting entities in this sector, contributing to broader intelligence on retail and e-commerce security threats. This entry documents the entity's status without disclosing unverified incident details such as data stolen, ransom demands, or specific breach timelines. ColdFrontDist.com was listed as a ransomware victim associated with Interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The entity is documented within this threat-intelligence index under the listing type ransomware victim, associated with the threat actor interlock. This classification reflects its inclusion in intelligence records connecting affected organizations to specific cyber threat activity. The description focuses on verifiable contextual attributes—sector, geographic origin, and threat attribution—without speculating on unconfirmed technical details. Coldfrontdist.com remains cataloged neutrally as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the US Transportation, Travel, and Logistics sector, providing services aligned with freight movement, passenger connectivity, and supply-chain logistics workflows. The domain appears associated with an organization cataloged as a ransomware victim in threat-intelligence records. Its inclusion reflects observed threat activity tied to interlock, a threat actor identified in cybersecurity intelligence datasets. This listing type documents the entity's relationship to malicious cyber operations without confirming specific incident details such as data stolen, affected systems, or ransom demands. The description remains neutral and factual, focused on sector context, geographic location, listing classification, and the associated threat actor. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector, based in the United States. The domain represents an entity cataloged in the threat-intelligence index under the designation ransomware victim. Its association with threat actor interlock indicates a cybersecurity incident of concern within the retail technology landscape. This entry provides neutral context regarding the entity's classification and its documented relationship to the specified threat actor without disclosing unverified incident details. The listing type reflects the entity's status as a victim of ransomware activity linked to interlock. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. The entity is formally indexed as a ransomware victim associated with the threat actor interlock within this threat-intelligence catalog. This listing type indicates documented exposure to cyber-enabled ransomware activity targeting operational continuity and data integrity within critical logistics infrastructure. The catalog entry reflects verified threat-intelligence linkage rather than confirmed incident details, preserving neutrality regarding specific attack vectors, data handling, or recovery status. Understanding this association supports risk assessment for sector-focused security monitoring and defense planning. |
||||||
| Ransomware | Cold Front Distribution id32821 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain is formally listed in this threat-intelligence index as a ransomware victim, with the associated threat actor and source identified as Interlock. This designation reflects the entity's inclusion in cybersecurity records documenting ransomware activity within its industry context. The entry serves to inform defenders and analysts about potential exposure vectors within transportation and logistics infrastructure. Coldfrontdist.com remains cataloged neutrally as a ransomware victim associated with Interlock. |
||||||
| Ransomware | Cold Front Distribution id32822 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and online business infrastructure. As documented in this threat-intelligence index, the entity is classified as a ransomware victim linked to the threat actor interlock. The listing type identifies Coldfrontdist.com specifically within ransomware incident contexts, highlighting its exposure to cyber threats targeting commercial and consumer-facing digital operations. This record serves as a reference point for analysts tracking adversary activity across retail and e-commerce environments, emphasizing the importance of sector-specific threat monitoring and defensive awareness. |
||||||
| Ransomware | Cold Front Distribution id32827 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfront Dist. operates within the US Retail and E-commerce sector, providing digital commerce and distribution services. The domain coldfrontdist.com has been cataloged as a ransomware victim within a threat-intelligence index, explicitly associated with the threat actor interlock. This listing type indicates documented intelligence linking the entity to malicious activity targeting retail and online commerce environments. The entry reflects assessed threat exposure without disclosing unverified incident details such as data stolen, ransom terms, or confirmed breach specifics. It serves as a reference point for security teams monitoring interlock-related campaigns against US retail and e-commerce infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32840 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com represents a US-based organization operating within the retail and e-commerce sectors. The domain is cataloged as a ransomware victim within a threat-intelligence index, with its association tied to the threat actor interlock. This listing contextualizes the entity’s exposure profile and operational environment for cybersecurity researchers and defenders monitoring retail and e-commerce infrastructure threats. The description intentionally avoids speculative claims regarding data stolen, breach scope, ransom demands, or confirmed incident details, relying solely on the verified listing classification. It serves as a neutral reference point for understanding interlock activity and ransomware impact across targeted commercial sectors. |
||||||
| Ransomware | Cold Front Distribution id32840 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility operations. The domain is cataloged as a ransomware victim within a threat-intelligence index, with the associated threat actor identified as interlock. This listing reflects observed cybersecurity event linkage rather than confirmed breach details, intentionally avoiding speculation regarding data exfiltration, ransom demands, or operational impact. For threat analysts, Coldfrontdist.com serves as a reference point for understanding ransomware targeting transportation and logistics environments under the interlock actor profile. The entry supports contextual awareness of sector-specific vulnerabilities and active adversary patterns. |
||||||
| Ransomware | Cold Front Distribution id32841 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sector, cataloged in this threat-intelligence index as a ransomware victim. The domain name and sector context indicate commercial digital operations where cyber threats targeting retail infrastructure are a recognized concern. As part of the Interlock threat actor association, this listing documents the entity's relationship to ransomware activity within the indexed dataset. This entry provides neutral, factual context for researchers and defenders assessing threat patterns across retail and e-commerce environments without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and associated online infrastructure. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim. The association with threat actor interlock indicates a cybersecurity incident where interlock's activity impacted this organization's digital environment. This listing serves to document the entity's exposure within the broader landscape of retail sector cyber threats. The entry provides neutral context for defenders assessing risks tied to interlock's campaigns in commercial online operations. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is a US-based entity operating within the Retail and E-commerce sectors, cataloged as a ransomware victim within a threat-intelligence index. Its inclusion reflects observed cybersecurity event correlation and intelligence linkage relevant to retail infrastructure security assessments. The entity serves as a reference point for threat actor interlock activity within commercial digital environments, supporting contextual analysis of ransomware targeting commerce-focused organizations. This entry documents the association neutrally without disclosing unverified incident specifics such as data exfiltration details, financial impact, or confirmed breach scope. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services relevant to online consumer markets. As cataloged in threat-intelligence records, this entity is identified as a ransomware victim associated with the interlock threat actor. The listing reflects its role within security incident indexing rather than disclosing confirmed breach details, stolen data categories, or operational impact specifics. This entry supports threat-intelligence analysis by connecting sector, geography, entity profile, and associated adversary context for defenders and security researchers monitoring retail and e-commerce cyber risks. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. As cataloged in threat-intelligence indexes, this entity is identified as a ransomware victim associated with the threat actor Interlock. The listing type underscores the cybersecurity impact observed against this organization, reflecting potential operational disruption and security exposure within its business environment. This description adheres to neutral, factual reporting standards without disclosing unverified incident details, ensuring clarity for threat-intelligence professionals and security analysts monitoring retail sector vulnerabilities. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com is an entity operating within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and freight management workflows. As documented in the threat-intelligence index, ColdFrontDist.com is listed as a ransomware victim associated with the interlock threat actor. This classification reflects observed cyber-threat activity targeting organizations in this operational sector, without confirming specific stolen data, ransom demands, or incident details. The entry serves as a reference point for security teams monitoring ransomware campaigns linked to interlock within transportation and logistics environments. Its inclusion underscores ongoing vigilance for sector-relevant threat actors and potential victim infrastructure. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sectors, providing digital commerce and distribution services. The entity has been cataloged as a ransomware victim within threat-intelligence frameworks, specifically associated with the threat actor interlock. This designation reflects the cybersecurity context in which the organization was impacted, highlighting vulnerabilities within retail technology environments. The listing serves to inform defenders and analysts about potential attack vectors relevant to similar sectors. No specific incident details, such as data stolen or ransom demands, are included per strict factual boundaries. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with freight movement, passenger connectivity, and supply chain coordination. The domain appears in threat-intelligence indexing as a ransomware victim associated with the interlock threat actor group. This listing reflects the entity's inclusion in cybersecurity intelligence records documenting its exposure profile within this sector and its connection to interlock. No specific incident details, breach confirmations, data claims, or financial impact are asserted here, maintaining factual neutrality. The catalog entry serves to contextualize ColdFrontDist.com within broader ransomware-victim intelligence for sector-focused threat analysis. |
||||||
| Ransomware | Cold Front Distribution id32843 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, providing digital commerce and distribution services. It is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. The listing reflects the entity's status within the cybersecurity intelligence framework without disclosing specific incident details, such as data stolen, records impacted, ransom demands, or confirmed breach specifics. This entry supports threat-aware analysis for sector-focused security teams monitoring retail and e-commerce environments. The neutral classification emphasizes verified association context while maintaining factual restraint on unconfirmed operational claims. |
||||||
| Ransomware | Cold Front Distribution id32859 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the Retail and E-commerce sector and is situated in the United States. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the threat actor interlock. This listing type reflects the nature of the reported cyber incident involving the organization, contextualized within its industry exposure to retail and online commerce threats. The entry provides a neutral, factual reference point for cybersecurity analysts monitoring interlock activity and its impact across retail digital environments. |
||||||
| Ransomware | Cold Front Distribution id33051 View details | United States | Retail / E-commerce | leaked | ||
|
https://coldfrontdist.com operates within the United States retail and e-commerce sector, providing commerce-related services and infrastructure. The entity is cataloged in the threat-intelligence index under the designation ransomware victim, with its associated threat actor and source identified as interlock. This listing reflects the cybersecurity community's documented relationship between the entity and the interlock threat actor within the retail digital ecosystem. The entry serves as a reference point for monitoring ransomware activity in US-based retail and e-commerce environments. coldfrontdist.com was listed as a ransomware victim associated with interlock. |
||||||
| Ransomware | Cold Front Distribution id33052 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure. As cataloged in our threat-intelligence index, this entity is classified as a ransomware victim associated with the interlock threat actor group. The listing reflects observed security event correlation without disclosing unverified incident details such as data exfiltration scope, ransom demands, or internal breach confirmations. This entry serves threat analysts and security teams monitoring retail sector cyber risks tied to interlock activity. The record maintains a neutral, factual perspective aligned with responsible intelligence reporting standards. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States transportation, travel, and logistics sector. The domain serves as a catalog entry identifying an organization assessed as a ransomware victim within this threat-intelligence index. The listing associates this entity with the threat actor interlock, reflecting the cybersecurity context documented for this indexed incident. No specific breach details, data exfiltration metrics, ransom terms, or confirmed loss figures are included, per strict factual boundaries for threat-intelligence catalog copy. This description provides neutral, encyclopedic context for researchers, defenders, and security professionals monitoring ransomware activity across critical logistics sectors. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the Retail and E-commerce sector, with operations based in the United States. The entity functions as a commercial service provider serving retail and online commerce markets, though specific operational details remain limited in public threat intelligence records. According to the threat-intelligence index, ColdFrontDist.com was formally listed as a ransomware victim linked to the interlock threat actor group. This designation reflects its inclusion in cybersecurity threat datasets as an affected organization within the specified sector and geographic context. The entry serves to catalog the relationship between the entity, its sector profile, and the associated threat actor without disclosing unverified incident details. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
coldfrontdist.com operates within the United States transportation, travel, and logistics sector, providing services aligned with supply chain and mobility workflows. The domain is cataloged as a ransomware victim within the threat-intelligence index, associated with the threat actor interlock. This listing reflects the entity's inclusion in intelligence records documenting cyber incidents affecting sector-relevant organizations. No specific breach details, stolen data categories, record counts, ransom terms, or confirmed incident specifics are provided here, in accordance with strict factual and neutral reporting guidelines. The entry serves as a structured reference for threat analysts tracking ransomware activity across transportation and logistics environments. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
ColdFrontDist.com operates within the United States retail and e-commerce sector, functioning as a commercial entity referenced in threat-intelligence indexing. As cataloged under the ransomware victim classification, this listing associates the entity with the threat actor interlock, reflecting its documented relationship within cybersecurity threat databases. The description emphasizes sector context and geographic origin without asserting unverified breach details, ensuring factual neutrality aligned with intelligence reporting standards. This entry serves threat analysts seeking structured context on compromised retail infrastructure and associated adversary activity. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online retail operations. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details such as data stolen, ransom demands, or breach confirmation specifics. The description adheres to neutral, authoritative standards for cataloging cybersecurity incidents across sectors and geographies. Coldfrontdist.com's inclusion underscores ongoing monitoring of ransomware activity within critical retail and e-commerce environments. |
||||||
| Ransomware | Cold Front Distribution id33053 View details | United States | Retail / E-commerce | leaked | ||
|
Coldfrontdist.com operates within the United States retail and e-commerce sector, providing digital commerce services and infrastructure relevant to online retail operations. The entity is cataloged as a ransomware victim within a threat-intelligence index, specifically associated with the threat actor interlock. This listing reflects the observed relationship between the entity and the identified threat actor without disclosing unverified incident details such as data stolen, ransom demands, or breach confirmation specifics. The description adheres to neutral, authoritative standards for cataloging cybersecurity incidents across sectors and geographies. Coldfrontdist.com's inclusion underscores ongoing monitoring of ransomware activity within critical retail and e-commerce environments. |
||||||