Group:
Worldleaks
Discovered by ransomware.live: 2025-09-23
Estimated attack date:
2025-05-27
Country:
Description:
[AI generated] Mavis Tire Supply LLC, often known as Mavis Discount Tire, is one of the largest independent multi-brand tire dealers in the U.S. Founded in 1972, it offers a vast variety of tires, wheels and auto parts while also providing vehicle maintenance services such as brakes, oil changes and alignment. The company has over 700 service centers across 13 states, primarily in the Northeast and South of the United States.
Infostealer activity detected by HudsonRock
Compromised Employees: 2
Compromised Users: 72
Third Party Employee Credentials: 0
External Attack Surface:
24
DNS Records:
The following DNS records were found for the victim's domain.
- alt4.aspmx.l.google.com.
- alt1.aspmx.l.google.com.
- alt2.aspmx.l.google.com.
- aspmx.l.google.com.
- alt3.aspmx.l.google.com.
- google-site-verification=SmsqJroYmI8wNzDRJA81wlNSZMTDZzCTJO5bbze2Weg
- google-site-verification=BUJ3II0ILO5iCZ1U30RkYzmPsDcnBklmxsFWk2tTiCk
- MS=24E3DCDE13ECE591DA79D8C87C40620852711CD1
- v=spf1 ip4:192.55.104.84 ip4:192.55.104.85 ip4:192.55.104.74 ip4:192.55.104.72 ip4:148.77.9.36 ip4:216.150.146.120 ip4:107.20.210.250 ip4:52.1.14.157 ip4:107.23.16.222 ip4:54.173.83.138 include:_spf.google.com include:spf.ess.barracudanetworks.com includ" "e:trustpilotservice.com -all
- eel16flaubadhuklc5dt3v00ik
- work-accounts-domain-verification=F9LInXBXHQ5vkbFymyyFoznvaEpj92
- slack-domain-verification=kN9r8CSRDXVBEAqk8XFRfimr4cTv6LXB0NyB5po7
- apple-domain-verification=KeG5ab6KS9ybrPmx
- MS=ms18966405
- google-site-verification=lZ0jMxa-T-HBsaoMKpvj9f4eHU6WRcQ2XvBdIXF2-Zc
- 24ff2ebf0e7549f6b96ca23c402a699f
- MS=232E144CDF2CA455405B704EC852C153AC7F6700
- 1onsk5qslmeegmdjodvr9ceh5n
- facebook-domain-verification=541p15wmi6oleslgebsjcxa7wd1q6g
- atlassian-domain-verification=fzcKkXY3xr2dbwaLpgJKXci9bHahWSNAWa1aQb9xLGJzaKaCA1P15hSvYOTT/aZJ
- google-site-verification=INqTM4pdkRPIC3R8gsJdbf82oGsR41mVn82hsdMHNEA
- smartsheet-site-validation=ur8GtHBAHJ3_c4Td8s_5mcO2K-0YngqN
- google-site-verification=xDxLNuW0sUMSUUZySFu-VLHmgWv7f6EFpUrj4UhtQzY
- ahrefs-site-verification_93501a6f13bc13e77d863266a3e96e5c0617a91f2ad86b6368d079f7c200147a
- 83nic94pscfj1ssh93t57vc8vh
Cloud / SaaS Services Detected
Apple
Atlassian
Microsoft 365
Slack
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.