Ransomware victim disclosure
← All victimsB.T. Services
listed as BT Services · Claimed by Play · listed 4 months ago
Status timeline
- ListedFeb 26, 2026
- Data leakeddate unknown
At a glance
- Group
- Play
- Status
- Data leaked
- Country
- United Kingdom
- Sector
- Telecommunication
- Listed on leak site
- Feb 26, 2026
About the victim
AI dossier — public-source company profileB.T. Services is a refrigeration construction and service company based in Central Texas, founded in 1997. The company specialises in refrigeration construction, general construction, refrigeration service, and food service equipment sales. It serves commercial clients across the Central Texas area and can be reached at 512-335-7733.
- Industry
- Refrigeration Construction & Food Service Equipment
- Address
- Central Texas area (Austin, TX region), United States
- Founded
- 1997
Attack summary
Severity: medium — Data is listed as published by a known ransomware group, indicating confirmed exfiltration; however, the company is a small regional construction/refrigeration firm with no evidence of large-scale regulated PII, financial, medical, or critical-infrastructure data. No data inventory or proof file count was provided, limiting severity assessment.The Play ransomware group claims to have attacked B.T. Services and lists the disclosure status as data_published, indicating exfiltrated data has been or is being published on their leak site. No specific data size or ransom amount was stated.
What the group claims
United States
The leak post
captured from the group's site| Play ransomware HAS NEVER PROVIDED AND DOES NOT PROVIDE THE RaaS, read the FAQ page.WE NEVER WRITES FIRST, IF SOMEONE WRITES TO YOU, THEY ARE SCAMMERS.we'll buy your access: 75tkvxemb6zpyk3fbl3mwm32jklc2sdjacb3kazrioamopbfn2w2z5qd.onionIf we have not responded to you by email within 12 hours, please leave your contact information on the website in the contact tab. | | --- | | EMA Engineering & Consulting👁️ views: 321added: 2026-05-07publication date: 2026-05-11 | Accessoires Outillage Ltee👁️ views: 280added: 2026-05-07publication date: 2026-05-11 | K & E Distributing👁️ views: 282added: 2026-05-07publication date: 2026-05-11 | | Sokolin👁️ views: 7261 | Barnes Solicitors LLP👁️ views: 7182 | Witt UK Group👁️ views: 8181 | | Valley Plating Inc👁️ views: 8198 | Dock Pros👁️ views: 8179 | Kivells👁️ views: 8149 | | Specflue👁️ views: 8136 | Weber Kracht & Chellew👁️ views: 8180 | Lucky Look👁️ views: 8285 |
Sources
Source
Indexed 4 months agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

