Ransomware victim disclosure
← All victimsM****l
Claimed by Payoutsking · listed 5 months ago
Status timeline
- ListedJan 14, 2026
- Data leakeddate unknown
At a glance
- Group
- Payoutsking
- Status
- Data leaked
- Country
- Spain
- Listed on leak site
- Jan 14, 2026
About the victim
AI dossier — public-source company profileThe victim is identified only by the partial name 'M****l' and a redacted Spanish domain (w****.es), with no public site content or leak post available. The company appears to be based in Spain, but no further details about its operations or scale can be determined from the available evidence.
Attack summary
Severity: medium — Disclosed status is 'data_published', indicating data has been released rather than merely listed, which elevates severity above low; however, the absence of any leak post content, data size, or sector information prevents confirmation of regulated or sensitive data exposure required for high or critical ratings.The group 'payoutsking' claims a data publication-stage disclosure against this Spanish entity; no leak post content was captured, so the specific nature of the attack (encryption, exfiltration, or both) and the categories of data involved cannot be confirmed.
Sources
- Victim sitew****.es
Source
Indexed 5 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

