Group:
Dragonforce
Discovered by ransomware.live: 2026-02-01
Estimated attack date:
2026-01-25
Country:
Description:
Located in Apopka, FL, Mullinax Ford is proud to be one of the premier dealerships in the area. From the moment you walk into our showroom, you'll know our commitment to Customer Service is second to none. We strive to make your experience with Mullinax Ford a good one - for the life of your vehicle. Whether you need to Purchase, Finance, or Service a New or Pre-Owned Ford, you've come to the right place
DNS Records:
The following DNS records were found for the victim's domain.
- mullinaxford-com.mail.protection.outlook.com.
- bw=J8ilj6IZFZRJrzZTLYc99zVawmGvxbZe9maxQcpRMmyA
- google-site-verification=MqN6QjpmhshT6ketjg5osSJaZw64tdyXeXhQzzhE5es
- sophos-domain-verification=f0b6fd91f6ca410879b786fd7e9a686eea6e9b4a78c56967794007b9c5895b9f
- facebook-domain-verification=9tuc3gn0w554lsqcgqtrwetywpo6m3
- google-site-verification=w-MxxocvcxqIvgMfTPnv1jvgpu9gExn_efJ8lx8D_8o
- ahrefs-site-verification_4e2e6aa1f1c93063c59304b6b2a42adc2c2a539f41b335e47f1c9906eb0a54d5
- v=spf1 ip4:65.152.136.51/29 ip4:67.28.71.16/28 ip4:64.156.99.56/29 ip4:64.156.99.50 ip4:71.41.115.22 ip4:67.9.115.42 ip4:66.103.145.224/28 ip4:4.17.78.24/29 ip4:4.30.253.160/29 ip4:64.156.234.248/29 ip4:65.59.117.248/29 ip4:143.59.129.210 ip4:143.59.199.1" "78 ip4:104.189.200.9 ip4:64.156.221.130 ip4:64.156.221.136/29 ip4:96.69.193.62 ip4:194.195.208.50 ip4:67.28.64.190 ip4:64.156.99.22 ip4:67.28.64.200/29 ip4:4.30.253.158 ip4:50.175.49.10 ip4:64.156.234.242 ip4:173.160.181.70 ip4:65.59.118.66 include:spf.pr" "otection.outlook.com include:_spf_useast2.prod.hydra.sophos.com ~all
- ahrefs-site-verification_00323158578a49d30f1e47a755324087d054bc1c8a1a9a4995f1817250f3e95c
- apple-domain-verification=mae4Lki14SvTO03a
- google-site-verification=nBZfbT_XjgbY7ZuvzK77rWdKOhneT1sxUopZhTTt_Jw
- MS=ms72493245
- google-site-verification=66DZJvLbLsPensMX2X_4SoSViicRI903kA3r0KQtwKI
Cloud / SaaS Services Detected
Apple
Microsoft 365
Sophos
Leak Screenshot:
Legal Disclaimer:
Ransomware.live does not engage in the acquisition, exfiltration, downloading, possession,
hosting, access, consultation, redistribution, or disclosure of unlawfully obtained data.
This platform indexes only publicly visible information posted by ransomware operators and
open web sources without accessing or obtaining the underlying stolen content.
The service is provided to support public awareness, legitimate research, and cyber-resilience.
No stolen personal or confidential data is collected or distributed via this site.