Ransomware victim disclosure
← All victimsPaid Victim 111CEAA5AD9DA2F1
Claimed by AuditTeam · listed 7 hours ago
Status timeline
- Listed
Jun 4, 2026
- Data leaked
At a glance
About the victim
AI dossier — public-source company profileUnable to identify. Victim identifier is a generic placeholder (Paid Victim 111CEAA5AD9DA2F1) with no clearnet site or public information available.
Attack summary
Severity: low — No proof files published. Post indicates data deletion and case closure rather than ongoing threat or data sale. No operational impact stated. Absence of victim identification and public evidence suggests this may be a settlement announcement rather than a genuine disclosure.AuditTeam claims cooperation was reached with the victim. The group states all exfiltrated data has been purged from their servers and the entity has demonstrated security remediation compliance. Case marked closed.
Original description
AI-summarised, not from the leak postN/A
The leak post
captured from the group's site[[ DATA EXPOSURE LOGS ]](http://6tdqqaxftvradka5d2frzgwixis7fmro7rfh4ettzcx7jfapkebe6jad.onion/) # AUDIT ENTITY: [ COOPERATION REACHED ] // ALL ACQUIRED DATA HAS BEEN PURGED FROM OUR SERVERS // ENTERPRISE SECURITY REMEDIATION VERIFIED // ENTITY HAS DEMONSTRATED HIGH SECURITY COMPLIANCE // NO FURTHER ACTION REQUIRED — CASE CLOSED
Sources
Source
Indexed 7 hours agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.
