Actor Profile

🏹 Doommageddon — Ransomware

Direct Extortion Double Extortion

Classification

Ransomware

Leak-site victims

8
Ransomware.live

Associated IoCs

0
local intel

MITRE techniques

ATT&CK

Tracked

Yes
Ransomware.live

🔥 Leak-Site Victims (8)

VictimCountryPublishedDomain
Reni Farmácias Associadas BR 2026-07-19T22:20:57.074650+00:00 renifarmacias.com.br
Hospital Di Camp 2026-07-10T08:20:29.041483+00:00
Solventa & Riskmetrica | Calificadora de Riesgos PY 2026-07-06T06:42:57.538761+00:00 syr.com.py
Francisco Imóveis BR 2026-07-06T06:43:31.097549+00:00 franciscoimoveis.com.br
Innovano IN 2026-07-06T06:44:04.183596+00:00 innovano.com
Mercedes-Benz Turk TR 2026-07-06T06:44:37.770562+00:00 mercedesbenzturk.com.tr
KOLORKIM KIMYA TR 2026-07-06T06:45:33.368087+00:00 kolorkim.com.tr
iw steelTEC Makine San. ve Tic. A.Ş. TR 2026-07-26T05:50:30.804538+00:00

Source: Ransomware.live leak-site monitoring (cached, offline-safe).

📁 Case Management

+ New case from this

🏹 Add to case

Attach Doommageddon (Actor / APT) and pull all linked entities:

🧭 Intelligence disciplines

CYBINT →OSINT →HUMINT →GEOINT →
Live group profile & victims via Ransomware.live; ATT&CK technique hints are a static reference for well-known groups. All network calls cached & offline-safe.
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports

🤖 AI Copilot

🔍 Lookup & Enrich

💡 Recommendations

⚙ Automation

Cron: 0 * * * * php /home/zaptf0zdggll/public_html/threats/cron.php