Ransomware Group intelligence
Qilin
ActiveTrack Qilin with 2564 published victims and 5 known leak locations in a single intelligence view.
Overview
Qilin is tracked by Breach House as a ransomware group with 2564 published victims.
United States is currently the most targeted country in this dataset.
5 known leak locations are currently associated with this group.
Leak Status Distribution
- Leaked 120 74.5%
- Pending 33 20.5%
- Deleted 8 5.0%
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (5)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 3 | Onion service | Up checked 1h ago | ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion |
| Leak location 5 | Onion service | Down checked 1h ago | ji57fr53anp7wb44tbbnp72qcgbhqywy4jmbncawdcrejj5amuvh3zqd.onion |
| Leak location 2 | Onion service | Down checked 1h ago | kbsqoivihgdmwczmxkbovk7ss2dcynitwhhfu5yw725dboqo5kthfaad.onion |
| Leak location 4 | Onion service | Down checked 1h ago | b4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion |
| Leak location 1 | Onion service | Down checked 1h ago | ozsxj4hwxub7gio347ac7tyqqozvfioty37skqilzo2oqfs4cw2mgtyd.onion |
Top Activity Sectors (18)
- Not identified 498
- Communication / Marketing 271
- Manufacturing / Engineering 201
- Services 201
- Finance / Legal / Insurance 171
- Construction / Real Estate 157
- Healthcare / Pharma 139
- IT 121
- Retail / E-commerce 88
- Education 73
- Public Sector 68
- Transportation / Travel / Logistics 53
- Energy 53
- Hospitality / Food & Beverage / Tourism 45
- Agriculture / Food 41
- Telecommunications 28
- NGOs / Associations 23
- Sports 1
Typical Attacks (52)
▼How Qilin typically operates, as attributed by MITRE ATT&CK v19.2. Attributed via Qilin.
-
T1190 Exploit Public-Facing Application Initial Access
What they do: Qilin has been delivered through exploitation of exposed applications and interfaces including Citrix and RDP.
What that means: Adversaries may attempt to exploit a weakness in an Internet-facing host or system to initially access a network.
-
T1566.001 Spearphishing Attachment Initial Access
What they do: Qilin has been delivered to victims through malicious email attachments.
What that means: Adversaries may send spearphishing emails with a malicious attachment in an attempt to gain access to victim systems.
-
T1566.002 Spearphishing Link Initial Access
What they do: Qilin has been delivered via malicious links in spearphishing emails.
What that means: Adversaries may send spearphishing emails with a malicious link in an attempt to gain access to victim systems.
-
T1047 Windows Management Instrumentation Execution
What they do: Qilin can use WMIC to change the Volume Shadow Copy Service (VSS) startup type to manual.
What that means: Adversaries may abuse Windows Management Instrumentation (WMI) to execute malicious commands and payloads.
-
What they do: Qilin has pushed scheduled tasks via Group Policy Objects (GPOs) for execution.
What that means: Adversaries may abuse the Windows Task Scheduler to perform task scheduling for initial or recurring execution of malicious code.
-
T1059.001 PowerShell Execution
What they do: Qilin has been deployed on VMware vCenter and ESXi servers via custom PowerShell script.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1059.003 Windows Command Shell Execution
What they do: Qilin has run `cmd /C [PsExec] -accepteula \\IP Address -c -f -h -d -i C:\Users\xxx\<encryptor_1>.exe --password [PASSWORD] --spread --spread-process` to execute its encryptor to target multiple network shares.
What that means: Adversaries may abuse the Windows command shell for execution.
-
T1106 Native API Execution
What they do: Qilin can attempt to log on to the local computer via `LogonUserW` and use `GetLogicalDrives()` and `EnumResourceW()` for discovery.
What that means: Adversaries may interact with the native OS application programming interface (API) to execute behaviors.
-
T1204.001 Malicious Link Execution
What they do: Qilin has been executed by luring victims into clicking links in spearphishing emails.
What that means: An adversary may rely upon a user clicking a malicious link in order to gain execution.
-
T1204.002 Malicious File Execution
What they do: Qilin has been delivered to victims through spearphishing emails with malicious attachments.
What that means: An adversary may rely upon a user opening a malicious file in order to gain execution.
-
What they do: Qilin can make Registry modifications to share networked drives between elevated and non-elevated processes and to increase the number of outstanding network requests per client.
What that means: Adversaries may interact with the Windows Registry as part of a variety of other techniques to aid in defense evasion, persistence, and execution.
-
What they do: Qilin has created a RunOnce autostart entry at `HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce*aster = %Public%\enc.exe` pointing to a dropped copy of itself in the Public folder.
What that means: Adversaries may achieve persistence by adding a program to a startup folder or referencing it with a Registry run key.
-
What they do: Qilin can configure a Winlogon registry entry.
What that means: Adversaries may abuse features of Winlogon to execute DLLs and/or executables when a user logs in.
-
What they do: Qilin can inject pwndll.dll, a patched DLL from the legitimate DLL WICloader.dll, into svchost.exe for continuous execution.
What that means: Adversaries may inject dynamic-link libraries (DLLs) into processes in order to evade process-based defenses as well as possibly elevate privileges.
-
What they do: Qilin can use an embedded Mimikatz module for token manipulation.
What that means: Adversaries may modify access tokens to operate under a different user or system security context to perform actions and bypass access controls.
-
What they do: Qilin has pushed a scheduled task via a Group Policy Object for payload execution.
What that means: Adversaries may modify Group Policy Objects (GPOs) to subvert the intended discretionary access controls for a domain, usually with the intention of escalating privileges on the domain.
-
T1548.002 Bypass User Account Control Privilege Escalation
What they do: Qilin can bypass standard user access controls by using stolen tokens to launch processes at an elevated security context.
What that means: Adversaries may bypass UAC mechanisms to elevate process privileges on system.
-
T1027.013 Encrypted/Encoded File Stealth
What they do: Qilin can employ several code obfuscation methods, including renaming functions, altering control flows, and encrypting strings.
What that means: Adversaries may encrypt or encode files to obfuscate strings, bytes, and other specific patterns to impede detection.
-
T1036.004 Masquerade Task or Service Stealth
What they do: Qilin has created a scheduled task named TVInstallRestore to mimic TeamViewer.
What that means: Adversaries may attempt to manipulate the name of a task or service to make it appear legitimate or benign.
-
T1036.005 Match Legitimate Resource Name or Location Stealth
What they do: Qilin has named its payload file TeamViewer_Host_Setup to disguise itself as a legitimate TeamViewer file.
What that means: Adversaries may match or approximate the name or location of legitimate files, Registry keys, or other resources when naming/placing them.
-
T1070.004 File Deletion Stealth
What they do: Qilin can delete itself from infected hosts after execution.
What that means: Adversaries may delete files left behind by the actions of their intrusion activity.
-
T1480 Execution Guardrails Stealth
What they do: Qilin can require a specific password to be passed by command-line argument during execution which must match a pre-defined value in the configuration in order for it to continue execution.
What that means: Adversaries may use execution guardrails to constrain execution or actions based on adversary supplied and environment specific conditions that are expected to be present on the target.
-
T1480.002 Mutual Exclusion Stealth
What they do: Qilin can create a mutex to ensure only one instance is running.
What that means: Adversaries may constrain execution or actions based on the presence of a mutex associated with malware.
-
T1678 Delay Execution Stealth
What they do: Qilin has the ability to delay execution.
What that means: Adversaries may employ various time-based methods to evade detection and analysis.
-
T1222 File and Directory Permissions Modification Defense Impairment
What they do: Qilin can use symbolic links to redirect file paths for remote and local objects and can use `chmod +x` to make its payload binary executable.
What that means: Adversaries may modify file or directory permissions/attributes to evade access control lists (ACLs) and access protected files.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: Qilin can terminate antivirus-related processes and services.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1685.005 Clear Windows Event Logs Defense Impairment
What they do: Qilin has the ability to clear Windows Event Logs.
What that means: Adversaries may clear Windows Event Logs to hide the activity of an intrusion.
-
T1688 Safe Mode Boot Defense Impairment
What they do: Qilin can reboot targeted systems in safe mode to avoid detection.
What that means: Adversaries may abuse Windows safe mode to disable endpoint defenses.
-
T1003.001 LSASS Memory Credential Access
What they do: Qilin can employ an embedded Mimikatz module to dump LSASS memory.
What that means: Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).
-
T1007 System Service Discovery Discovery
What they do: Qilin can identify specific services for termination or to be left running at execution.
What that means: Adversaries may try to gather information about registered local system services.
-
T1012 Query Registry Discovery
What they do: Qilin can check `HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control SystemStartOptions` to determine if a machine is running in safe mode.
What that means: Adversaries may interact with the Windows Registry to gather information about the system, configuration, and installed software.
-
T1016 System Network Configuration Discovery Discovery
What they do: Qilin can accept a command line argument identifying specific IPs.
What that means: Adversaries may look for details about the network configuration and settings, such as IP and/or MAC addresses, of systems they access or through information discovery of remote systems.
-
T1018 Remote System Discovery Discovery
What they do: Qilin can enumerate domain-connected hosts during its discovery phase.
What that means: Adversaries may attempt to get a listing of other systems by IP address, hostname, or other logical identifier on a network that may be used for Lateral Movement from the current system.
-
T1057 Process Discovery Discovery
What they do: Qilin can define specific processes to be terminated or left alone at execution.
What that means: Adversaries may attempt to get information about running processes on a system.
-
T1069.002 Domain Groups Discovery
What they do: Qilin can run PowerShell cmdlets to discover domain groups.
What that means: Adversaries may attempt to find domain-level groups and permission settings.
-
T1082 System Information Discovery Discovery
What they do: Qilin can detect whether a system is running FreeBSD, VMkernel (ESXi), Nutanix AHV, or a standard Linux distribution to enable platform-specific encryption behaviors.
What that means: An adversary may attempt to get detailed information about the operating system and hardware, including version, patches, hotfixes, service packs, and architecture.
-
T1083 File and Directory Discovery Discovery
What they do: Qilin can exclude specific directories and files from encryption.
What that means: Adversaries may enumerate files and directories or may search in specific locations of a host or network share for certain information within a file system.
-
T1087.001 Local Account Discovery
What they do: Qilin can list all local users found on a targeted system.
What that means: Adversaries may attempt to get a listing of local system accounts.
-
T1087.002 Domain Account Discovery
What they do: Qilin can use PowerShell cmdlets to enumerate domain users.
What that means: Adversaries may attempt to get a listing of domain accounts.
-
T1135 Network Share Discovery Discovery
What they do: Qilin has the ability to list network drives.
What that means: Adversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of interest for Lateral Movement.
-
T1673 Virtual Machine Discovery Discovery
What they do: Qilin can detect virtual machine environments including ESXi hosts, datacenters, and clusters within vCenter environments.
What that means: An adversary may attempt to enumerate running virtual machines (VMs) after gaining access to a host or hypervisor.
-
T1680 Local Storage Discovery Discovery
What they do: Qilin has used `GetLogicalDrives()` and `EnumResourceW()` to locate mounted drives and shares.
What that means: Adversaries may enumerate local drives, disks, and/or volumes and their attributes like total or free space and volume serial number.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: Qilin can embed a copy of PsExec within its payload and place it in the %Temp% directory under a randomly generated filename.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1021.004 SSH Lateral Movement
What they do: Qilin can enable SSH access on ESXi hosts.
What that means: Adversaries may use Valid Accounts to log into remote machines using Secure Shell (SSH).
-
T1570 Lateral Tool Transfer Lateral Movement
What they do: Qilin has used PsExec to distribute a second encryptor, named encryptor_1.exe, across the targeted environment.
What that means: Adversaries may transfer tools or other files between systems in a compromised environment.
-
T1071.002 File Transfer Protocols Command and Control
What they do: Qilin can use WinSCP for the secure file transfer of the Linux ransomware binary to a targeted system.
What that means: Adversaries may communicate using application layer protocols associated with transferring files to avoid detection/network filtering by blending in with existing traffic.
-
T1219.002 Remote Desktop Software Command and Control
What they do: Qilin can use the Splashtop remote management service (SRManager.exe) to execute the Linux ransomware binary directly on Windows systems.
What that means: An adversary may use legitimate desktop support software to establish an interactive command and control channel to target systems within networks.
-
T1486 Data Encrypted for Impact Impact
What they do: Qilin can use AES-256 or ChaCha20 for domain-wide encryption of victim servers and workstations and RSA-4096 or RSA-2048 to secure generated encryption keys.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1489 Service Stop Impact
What they do: Qilin can terminate specific services on compromised hosts.
What that means: Adversaries may stop or disable services on a system to render those services unavailable to legitimate users.
-
T1490 Inhibit System Recovery Impact
What they do: Qilin can execute `vssadmin.exe delete shadows /all /quiet` to remove volume shadow copies and can disable High Availability (HA) and Distributed Resource Scheduler (DRS) in vCenter clusters.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
-
T1491.001 Internal Defacement Impact
What they do: Qilin can set the wallpaper on compromised hosts to display a ransom message in each encrypted folder.
What that means: An adversary may deface systems internal to an organization in an attempt to intimidate or mislead users, thus discrediting the integrity of the systems.
-
T1529 System Shutdown/Reboot Impact
What they do: Qilin can initiate a reboot of the backup server to hinder recovery.
What that means: Adversaries may shutdown/reboot systems to interrupt access to, or aid in the destruction of, those systems.
Tools Observed (27)
▼Software Qilin has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Credential theft
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (3)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README-RECOVER-[rand]_2.txt
-- Qilin We have 3.4TB of your data stored on our servers. Contact us or we will publish this data on our blog, in the media and pass it on to the relevant authorities. We are ready to offer you a discount in case of payment within a week. Your network/system was encrypted. Encrypted files have new extension. -- Compromising and sensitive data We have downloaded compromising and sensitive data from your system/network. Our group cooperates with the mass media. If you refuse to communicate with us and we do not come to an agreement, your data will be reviewed and published on our blog and on the media page (https://wikileaks2.site/) Blog links: http://kbsqoivihgdmwczmxkbovk7ss2dcynitwhhfu5yw725dboqo5kthfaad.onion http://ijzn3sicrcy7guixkzjkib4ukbiilwc3xhnmby4mcbccnsd7j2rekvqd.onion Data includes: - Employees personal data, CVs, DL , SSN. - Complete network map including credentials for local and remote services. - Financial information including clients data, bills, budgets, annual reports, bank statements. - Complete datagrams/schemas/drawings for manufacturing in solidworks format - And more... -- Warning 1) If you modify files - our decrypt software won't able to recover data 2) If you use third party software - you can damage/modify files (see item 1) 3) You need cipher key / our decrypt software to restore you files. 4) The police or authorities will not be able to help you get the cipher key. We encourage you to consider your decisions. -- Recovery 1) Download tor browser: https://www.torproject.org/download/ 2) Go to domain 3) Enter credentials Please note that communication with us is only possible via the website in the Tor browser, which is specified in this note. All other means of communication are not real and may be created by third parties, if such were not provided in this note or on the website specified in this note. -- Credentials Extension: 2ir53sQQAU Domain: [snip] login: [snip] password:[snip]
README-RECOVER-[rand].txt
-- Qilin Your network/system was encrypted. Encrypted files have new extension. -- Compromising and sensitive data We have downloaded compromising and sensitive data from you system/network If you refuse to communicate with us and we do not come to an agreement, your data will be published. Data includes: - Employees personal data, CVs, DL , SSN. - Complete network map including credentials for local and remote services. - Financial information including clients data, bills, budgets, annual reports, bank statements. - Complete datagrams/schemas/drawings for manufacturing in solidworks format - And more... -- Warning 1) If you modify files - our decrypt software won't able to recover data 2) If you use third party software - you can damage/modify files (see item 1) 3) You need cipher key / our decrypt software to restore you files. 4) The police or authorities will not be able to help you get the cipher key. We encourage you to consider your decisions. -- Recovery 1) Download tor browser: https://www.torproject.org/download/ 2) Go to domain 3) Enter credentials-- Credentials Extension: [snip] Domain: e3v6tjarcltwc4hdkn6fxnpkzq42ul7swf5cfqw6jzvic4577vxsxhid.onion login: [snip] password:[snip]
DtMXQFOCos-RECOVER-README.txt
-- Agenda
Your network/system was encrypted.
Encrypted files have new extension.
-- Compromising and sensitive data
We have downloaded compromising and sensitive data from you system/network
If you refuse to communicate with us and we do not come to an agreementyour data will be published.
Data includes:
- Employees personal dataCVsDLSSN.
- Complete network map including credentials for local and remote services.
- Financial information including clients databillsbudgetsannual reportsbank statements.
- Complete datagrams/schemas/drawings for manufacturing in solidworks format
- And more...
-- Warning
1) If you modify files - our decrypt software won't able to recover data
2) If you use third party software - you can damage/modify files (see item 1)
3) You need cipher key / our decrypt software to restore you files.
4) The police or authorities will not be able to help you get the cipher key. We encourage you to consider your decisions.
-- Recovery
1) Download tor browser: https://www.torproject.org/download/
2) Go to domain
3) Enter credentials
-- Credentials
Extension: DtMXQFOCos
Domain: wlh3dpptx2gt7nsxcor37a3kiyaiy6qwhdv7o6nl6iuniu5ycze5ydid.onion
login: [snip]
password: [snip]
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (2564)
Search, filter and paginate the victim timeline for Qilin. Showing 1801–1900 of 2564.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Orum Asset management id22475 View details | Korea, Republic of | Services | — | ||
|
Orum Asset management Co, Korean Leak2. The company has been operating on the Korean stock market since 2021. Its total capital is 5.4 bil won ($3.8 mil). The company's main priority is the real estate market. The company has a public offerin ... |
||||||
| Ransomware | Dblock Asset Management Co id22473 View details | Korea, Republic of | Services | — | ||
|
Dblock Asset Management Co, Korean Leak2. They have blocked the development of their own future. Dblock Asset Management Co., Ltd is an investment company specializing in the acquisition and management of real estate and funds, part of the D- ... |
||||||
| Ransomware | SUNIQUE Asset Management Co id22468 View details | Hong Kong | Services | — | ||
|
SUNIQUE Asset Management Co, Korean Leak2. General business in the field of direct investment, investment consulting, and investment agency. The company's portfolio is 1.5 billion won ($1 million). The company claims that it works only with ... |
||||||
| Ransomware | Saebom Asset Management id22464 View details | Korea, Republic of | Services | — | ||
|
Saebom Asset Management Co., Korean Leak2. The company was founded in 2022. It operates in the Korean financial market and has several funds: multi-strategy and high-yield private investment funds, a mezzanine direct investment fund, and a pu ... |
||||||
| Ransomware | Zebra Asset Management Co id22463 View details | United States | Services | — | ||
|
Zebra Asset Management Co., Korean Leak2. The company has been operating on the Korean stock market since 2021. The company has a portfolio of 15bn won ($11m). The company continuously audits undervalued companies in order to make profits in ... |
||||||
| Ransomware | spartanburgcounty id22453 View details | United States | Public Sector | — | ||
|
SPARTANBURG, USA - Failure before the election. 08/08/25 FOX Carolina issued an urgent announcement: “Spartanburg County officials have stated that a ‘cybersecurity incident’ has occurred on their network.” As always, local authoritie ... |
||||||
| Ransomware | Prime Asset Fund id22452 View details | United States | Communication / Marketing | — | ||
|
Prime Asset Fund, USA is a highly questionable player in the US financial market. It is a company that operates in the investment banking industry. It employs 20 to 49 people and has revenues of $10 million to $25 million. Prime Asset also in ... |
||||||
| Ransomware | www.vdyne.com id22449 View details | United States | Healthcare / Pharma | — | ||
|
VDyne, USA is a clinical-stage medical device company dedicated to developing transcatheter valve solutions for the treatment of debilitating and life-threatening Tricuspid Regurgitation (TR). They are developing medical micro-prostheses that ... |
||||||
| Ransomware | Pieffe Auto Group id22448 View details | Italy | Telecommunications | — | ||
|
Pieffe Auto Group is a leading multi-brand automotive dealership network based in the Abruzzo region of Italy. The group represents a wide portfolio of car brands, including Peugeot, Citroën, DS Automobiles, Opel, Fiat, Jeep, Alfa Romeo, H ... |
||||||
| Ransomware | volinc.com id22381 View details | United States | Transportation / Travel / Logistics | — | ||
|
Founded in 1992 and headquartered in Conyers, Georgia, Volume Transportation, Inc. provides ground transportation, cargo loading, warehousing, storage, and material flow management services. 1.The document is a confidential mediation stateme ... |
||||||
| Ransomware | trchealthcare.com id22380 View details | United States | Healthcare / Pharma | — | ||
|
The Therapeutic Research Center was founded in 1985 and is headquartered in Stockton, California. The Therapeutic Research Center specializes in studying and evaluating new drugs that are approved for use each year. 1.The document is a clini ... |
||||||
| Ransomware | Klarman Asset Management id22373 View details | United States | Services | — | ||
|
Klarman Asset Management, Korean Leak part 7 - careful investing did not save them from losses. The company was founded in 2021 and focuses on multi-strategy investing. They claim that they only work with proven and reliable strategies that a ... |
||||||
| Ransomware | Human and Bridge Asset Management id22372 View details | Japan | Services | — | ||
|
Human and Bridge Asset Management, Korean Leak part 8 - another company with evidence of commercial collusion. The company is involved in high-risk investments. The total number of assets is 1.7 billion won ($1.2 million). The leaked data sho ... |
||||||
| Ransomware | Awesome Asset Management Co id22371 View details | Korea, Republic of | Services | — | ||
|
Awesome Asset Management Co., Korean Leak part 9 - Safe First, Benefit Second. But only on paper. Сompany operates in the investment market. The company, with a portfolio of 2 billion won ($1.4 million) in assets, came into existence in 202 ... |
||||||
| Ransomware | Pollex Asset Management Co. id22370 View details | Korea, Republic of | Services | — | ||
|
Pollex Asset Management Co., Korean Leak part 10 - The Company operates in the financial market. The company invests in a variety of assets using professional investment and risk management expertise, achieving optimal investment returns thro ... |
||||||
| Ransomware | VANCHOR Asset Management id22365 View details | Hong Kong | Services | — | ||
|
VANCHOR Asset Management, Korean Leak part 1. - The company operates in the stock market and provides and manages products based on alternative investment assets, primarily real estate investments. The company states that “the company puts ... |
||||||
| Ransomware | APEX Asset Management id22364 View details | Korea, Republic of | Services | — | ||
|
APEX Asset Management, Korean Leak part 2 - The company operates on the stock market in the field of private equity. It engages in investment management and investment consulting. The company has a capital of 5 billion won ($35 million). It i ... |
||||||
| Ransomware | Majesty Asset Management Co. id22363 View details | Hong Kong | Services | — | ||
|
Majesty Asset Management Co., Korean Leak part 3 - bastards of royalty. If a company comes up with a big name, then they are scoundrels. This is almost always the case, and a company called Majesty proves it. They have been in business for o ... |
||||||
| Ransomware | Melon Asset Management Co. id22362 View details | Korea, Republic of | Services | — | ||
|
Melon Asset Management Co., Korean Leak part 4 - financial asset management company specializing in private equity funds. The company has a portfolio of 2,5 billion won ($1.7 million) and 502,972 shares. The company works with alternative inv ... |
||||||
| Ransomware | Taurus Investment & Securities Co id22361 View details | Korea, Republic of | Finance / Legal / Insurance | — | ||
|
Taurus Investment & Securities Co., Korean Leak part 5 - a major player that has dishonored its name. The company operates in the stock market in Korea and other countries, generating up to $50 million in profits each year. The company's part ... |
||||||
| Ransomware | LX Asset Management id22360 View details | Luxembourg | Services | — | ||
|
LX Asset Management, Korean Leak part 6 - Investment security is paramount. And this is not true. LX Asset is a large investment company that works on the stock market. The main instruments: bonds, shares, real estate. The company is also act ... |
||||||
| Ransomware | Eagle Excavation id22357 View details | United States | Communication / Marketing | — | ||
|
Eagle Excavation, USA - They pride themselves on their digging skills, but they couldn't bury their dirty secrets deep enough. Eagle Excavation Atlantic performs site preparation work for projects throughout Georgia. They boast of multimillio ... |
||||||
| Ransomware | bio3g.com id22355 View details | France | Services | — | ||
|
BIO3G is a French company based in Merdrignac, Brittany, in the services sector, with additional locations in France and Switzerland. It presents itself as an agronomy specialist and says it has been developing and commercializing natural, environmentally oriented biostimulant solutions for crops for more than 25 years. Its website describes products and services aimed at supporting soil and crop performance through biotechnological and agricultural expertise. It was listed as a ransomware victim associated with Qilin. |
||||||
| Ransomware | [Redacted] #1510 id22379 View details | France | Other | — | — | |
|
Removed by company request of 15th September 2025 - Request #1510 |
||||||
| Ransomware | opso.us id22354 View details | United States | Public Sector | — | ||
|
The Orleans Parish Sheriff's Office and Sheriff Marlin N. Guzman are responsible for the custody, care, and control of inmates in one of the largest urban correctional facilities in the United States. 1.The document is a summary report on in ... |
||||||
| Ransomware | Office Of The Registrar Of Political Parties id22353 View details | Kenya | Communication / Marketing | — | ||
|
The Office of the Registrar of Political Parties (ORPP) is a state office in Kenya responsible for the registration, regulation, and funding of political parties as mandated by the Constitution and the Political Parties Act. It aims to promot ... |
||||||
| Ransomware | denali-industrial.com id22310 View details | United States | Manufacturing / Engineering | — | ||
|
Denali Industrial Supply - a knockout blow to its reputation. For 35 years, Denali Industrial Supply has been a supplier of high-quality industrial tools, fasteners, and accessories in Alaska. They work with many well-known manufacturers, inc ... |
||||||
| Ransomware | TAKwest id22302 View details | United States | Telecommunications | — | ||
|
Broadband data leak. Those who provide access to new digital opportunities have failed to ensure their own cybersecurity. TAK West Shore is a subsidiary of TAK Broadband. They offer comprehensive service solutions in the field of fiber optic ... |
||||||
| Ransomware | Spectra Logic id22265 View details | United States | Communication / Marketing | — | ||
|
Spectra Logic, USA - data protection and storage company LMAOOOAHHAHA I'm dead!!! Sorry, but this is really funny. PROTECTION! STORAGE! DATA!!!! On our blog, yes. So, Spectra Logic helps organizations manage, migrate, store and preserve busin ... |
||||||
| Ransomware | Ekotrade id22264 View details | Poland | Communication / Marketing | — | ||
|
EKOTRADE was founded in 1991. It operates on the Polish market and is one of the leaders in the security industry. EKOTRADE offers extensive experience, knowledge, and the highest quality services available on the market. The diligence and pr ... |
||||||
| Ransomware | Wouters France id22245 View details | France | Communication / Marketing | — | ||
|
Wouters France is a trading company that supplies fruit and vegetables wholesale to France and the European Union. Customers can choose from a wide range of seasonal fruit and vegetables, such as apples, pears, oranges, carrots, broccoli, and ... |
||||||
| Ransomware | Plan B Die Fachanwaltskanzlei id22194 View details | Germany | Finance / Legal / Insurance | — | ||
|
They acquitted criminals and now find themselves in the shoes of lawbreakers. The law firm Plan B was founded in Munich in 2014. Theft, robbery, fraud, murder, drug trafficking - for money, the lawyers at Plan B are ready to take on any dirty ... |
||||||
| Ransomware | EPLS: Entreprise d'Installations électriques Courant Fort id22183 View details | France | Communication / Marketing | — | ||
|
EPLS, France - the company is engaged in the design and construction of high-voltage and low-voltage systems for a large service sector that includes airports, hospitals, data centers and other critical infrastructure in France. EPLS prides i ... |
||||||
| Ransomware | runaces.com id22176 View details | United States | Communication / Marketing | — | ||
|
Finished the game. Running Aces -you're playing a losing hand.The Running Aces Casino and Racetrack opened in Columbus, Minnesota, in April 2008. Things did not go well from the start. In its first year of operation, the racetrack lost $4 mil ... |
||||||
| Ransomware | Mechatronics id22160 View details | United States | Telecommunications | — | ||
|
Mechatronics, Inc. USA specializes in providing a wide range of AC, DC, and EC fans and blowers, including accessories and custom assemblies, catering to industries such as telecom, medical, industrial, alternative energy, lighting displays, ... |
||||||
| Ransomware | Ekmanian Tax & Accounting id22139 View details | Sweden | Finance / Legal / Insurance | — | ||
|
Ekmanian Tax & Accounting, USA - scandal immediately after M&A. Company is a law firm that provides tax account services and bookkeeping for people and companies. Most recently, they announced a merger with another company, Brave Accounting. ... |
||||||
| Ransomware | Osaki Medical id22138 View details | Japan | Healthcare / Pharma | — | ||
|
Osaki Medical is a Japanese company, established in 1936, that manufactures and markets safe, functional, and cost-effective medical supplies, sanitary materials, cosmetics, and medical equipment for the medical and nursing care industries. T ... |
||||||
| Ransomware | Rivertown Surgey Center id22118 View details | United States | Healthcare / Pharma | — | ||
|
Rivertown Surgery Center is a Medicare-certified ambulatory surgical center specializing in outpatient procedures. The facility offers general surgery, pain management, foot surgery, and radiology services, supported by modern equipment. It ... |
||||||
| Ransomware | flamgard.co.uk id22114 View details | United Kingdom | Energy | — | ||
|
Flamgard Calidair, UK is global force in the design, innovation, and manufacture of high-integrity damper products for numerous applications including tunnels, marine vessels, and nuclear power stations. Now multiple buildings where Flamgard ... |
||||||
| Ransomware | Master System Inc id22112 View details | United States | Services | — | ||
|
Master System develops and supports software and services that deliver enterprise management and collaborative supply chain solutions to thousands of small to midsize distributors in a number of industries.Master System is headquartered in Ar ... |
||||||
| Ransomware | musimmas.com id22111 View details | Germany | Transportation / Travel / Logistics | — | ||
|
Musim Mas Group, Singapore - poisoning the world, not expensive. Headquartered in Singapore, Musim Mas is one of the world's largest, integrated palm oil corporations with operations in every part of the supply chain across the Americas, Euro ... |
||||||
| Ransomware | blytheco.com id22106 View details | United States | Services | — | ||
|
Blytheco is a full-service consulting firm that has been working with small and medium-sized businesses since 1980. Blytheco offers a wide range of business management software (ERP, CRM, HCM, marketing automation), backed by exceptional prof ... |
||||||
| Ransomware | camaradealmeria.com id22100 View details | Spain | Communication / Marketing | — | ||
|
Cámara Oficial de Comercio e Industria de vila, Spain - is a public corporation whose purpose is to represent, promote and defend the interests of Spanish companies. It also represents and coordinates the activities of regional chambers of c ... |
||||||
| Ransomware | NPIAV id22098 View details | United States | Services | — | ||
|
NPi Audio Visual Solutions, USA - the company organizes and hosts business events and parties. What happens behind closed doors at private conventions? Now we can peek behind the curtain and find out what the rich and famous really discuss an ... |
||||||
| Ransomware | identic.be id22091 View details | Belgium | Communication / Marketing | — | ||
|
Identic, Belgium, is the country's largest digital printing and signage company, as well as a copy machine store. The company is located in a 2,000 m² production facility, where approximately 20 employees work. The company works with many wo ... |
||||||
| Ransomware | PathoQuest-Biotechnology Research id22063 View details | France | IT | — | ||
|
PathoQuest-Biotechnology Research, USA-France The company conducts research on innovative biopharmaceuticals under complex testing conditions on two continents. PathoQuest offers a proven next-generation sequencing (NGS) approach to biosafety ... |
||||||
| Ransomware | L&S Proline id22057 View details | Denmark | Communication / Marketing | — | ||
|
L&S Proline, USA - Drill, baby, drill! L&S Proline is a full-service company specializing in solutions for the oil and gas industry, offering a range of products and services, including measurement control equipment, structural fabrication, a ... |
||||||
| Ransomware | Tecnología Especializada Asociada de México id22056 View details | Mexico | Communication / Marketing | — | ||
|
Tecnología Especializada Asociada de México, not a dream TEAM. The company positions itself as a ‘strategic link between producers, distribution channels and end consumers’. In reality, behind the buzzwords they try to hide the reality. ... |
||||||
| Ransomware | ESIC_TR id22055 View details | SP | Communication / Marketing | — | ||
|
ESIC University, Spain, is a higher education institution focused on the world of marketing. In other words, they teach how to sell products and ideas. One of the main principles of marketing is that people don't know what they need until we ... |
||||||
| Ransomware | ESIC_TR id22055 View details | Spain | Communication / Marketing | — | ||
|
ESIC University, Spain, is a higher education institution focused on the world of marketing. In other words, they teach how to sell products and ideas. One of the main principles of marketing is that people don't know what they need until we ... |
||||||
| Ransomware | atlanta neighborhood charter school id22044 View details | United States | Education | — | ||
|
Atlanta Neighborhood Charter School (ANCS) is a K-8 public charter school in Atlanta, recognized for its academic excellence and innovative programs. However, they could not make a program to protect their own students. All information on the ... |
||||||
| Ransomware | allphaselandscape.net id22034 View details | Construction / Real Estate | — | |||
|
All Phase Landscape, USA is a company engaged in landscaping, design, and service of green areas in parks, around administrative, office, and residential buildings. Making the surrounding space more beautiful and environmentally friendly is o ... |
||||||
| Ransomware | ibew1547.org id22033 View details | United States | Communication / Marketing | — | ||
|
IBEW Local 1547, USA - a union in Alaska that is supposed to provide safety and protect the rights of electric utility and communications workers, local officials, health care workers, and many other professionals. Safety - failed. Protection ... |
||||||
| Ransomware | ogdenpubs.com id22032 View details | United States | Communication / Marketing | — | ||
|
Ogden Publications Inc., USA - history repeats itself. One of the oldest publishing houses in the USA repeats its mistake time after time and has no experience. There is no other word than “idiocy” for their approach to problem solving. O ... |
||||||
| Ransomware | Town of Chatham, MASSACHUSETTS id22016 View details | United States | Public Sector | — | ||
|
Chatham, Massachusetts is located at the southeast tip of Cape Cod. Chatham MA is a municipal government that provides essential services to its residents, including emergency services, utilities, and community resources. The town focuses ... |
||||||
| Ransomware | gmcontractinginc.com id21998 View details | United States | Construction / Real Estate | — | ||
|
GM Contracting offers a full range of residential utility construction services. GM Contracting has years of residential experience with water and sewer utilities. In addition to traditional construction methods, GM Contracting is a full serv ... |
||||||
| Ransomware | Weathercraft Companies id21980 View details | United States | Construction / Real Estate | — | ||
|
Contractor Specializing in Roofing, Siding, Gutters, Windows, and Overhead Door Installation In 1976, Weathercraft of North Platte was founded by Alan Erickson and Bill Livengood, branching out from Weathercraft of Lincoln, NE. Weatherc ... |
||||||
| Ransomware | brebeuf.org id21976 View details | Canada | Education | — | ||
|
Brebeuf Jesuit Preparatory School, USA - cut off and in trouble with the law. A small Jesuit school in Indianapolis got attention in 2019 when it refused to fire a teacher who was in a gay marriage. The school was then cut from the Archdioces ... |
||||||
| Ransomware | singersf.com id21975 View details | United States | Communication / Marketing | — | ||
|
Singer Associates, USA - Money has no odor. The company is cleaning up its reputation and washing other company's dirty laundry. It used to be done by laundresses and asenizers, now it's done by PR people. One of them, Sam Singer. He bought h ... |
||||||
| Ransomware | www.nuggetent.com id21939 View details | United States | Communication / Marketing | — | ||
|
Nugget Enterprises, Inc. USA - We can't protect Your Data. The company develops software and provides servers for dozens of companies across the country. Is Your Data Really Secure? - That's the question hanging on the home page of the compan ... |
||||||
| Ransomware | gibbswire.com id21937 View details | United States | Manufacturing / Engineering | — | ||
|
Gibbs Interwire, USA, is the nation's leading processor and distributor of Strip Coil and Wire Products in Stainless Steel, Carbon Steel, Nickel Alloys, and Red Metals. The company is continually growing and increasing production capacity thr ... |
||||||
| Ransomware | hydrometrics.com id21936 View details | United States | Manufacturing / Engineering | — | ||
|
Hydrometrics, Inc., USA delivers professional scientific and engineering services to various sectors including industrial, commercial, municipal, and private clients across the United States. With over 40 years of experience, the company spec ... |
||||||
| Ransomware | nrlassoc.com id21931 View details | United States | Manufacturing / Engineering | — | ||
|
NRL Associates, Inc. USA. The company manufactures machine tooled parts for a variety of customers. 10 years ago, the company significantly expanded and moved into a new 55,000 square foot state-of-the-art facility. They now have the most mod ... |
||||||
| Ransomware | diversifiedcpc.com id21922 View details | United States | Communication / Marketing | — | ||
|
Diversified CPC International, USA manufactures products whose name is not known to the general public. The company is a world leader in the development, manufacture and distribution of aerosol propellants, hydrocarbon refrigerants, biomass s ... |
||||||
| Ransomware | swanforlife.com id21921 View details | Mauritius | Finance / Legal / Insurance | — | ||
|
SWAN, Mauritius – welcome to the dark side of the insurance business. The company is based in a country known for its money laundering and offshore account creation organizations. SWAN specializes in all types of insurance and advertises th ... |
||||||
| Ransomware | medosweet.com id21919 View details | United States | Agriculture / Food | — | ||
|
Medosweet Farms provides a full range of distribution services for fresh and frozen locally produced dairy products, made from environmentally friendly materials, to food service businesses throughout the Pacific Northwest. 1.Full company ... |
||||||
| Ransomware | Graphite Construction Group id21918 View details | United States | Construction / Real Estate | — | ||
|
Graphite Construction Group is a commercial construction company that provides exceptional service and innovative design solutions that exceed expectations for quality construction. It is Central Iowa's fastest-growing contractor. In th ... |
||||||
| Ransomware | www.ecodemolizionisrl.com id21912 View details | Italy | Construction / Real Estate | — | ||
|
Eco Demolizioni, Italy - the company deals with demolition of large buildings, quarrying, reclamation, beach cleaning etc. Even in its name the company uses the word ECO. When deeply analyzing its work it becomes clear that this is just a mar ... |
||||||
| Ransomware | Inicio - Ganadería Revuelta id21911 View details | Mexico | Manufacturing / Engineering | — | ||
|
Inicio - Ganadería Revuela, Mexico - the company produces beef. It has its own production chain, which includes: feedlots, slaughterhouse, packing factory and finished product factory. The company supplies meat to the United States, Canada, ... |
||||||
| Ransomware | www.wyongleagues.com.au id21899 View details | Australia | Telecommunications | — | ||
|
Wyong Rugby League Club, Australia is a network of 12 organizations, each offering entertainment, recreational and dining opportunities and promoting membership of their club. It is the membership card that opens up a full range of entertainm ... |
||||||
| Ransomware | www.greneker.com id21898 View details | United States | Retail / E-commerce | — | ||
|
Greneker, USA - boobs and slaves. The company manufactures mannequins for clothing stores and entertainment centers. Its clients include major international brands such as Disney and Under Armour. The published date reveals the unpleasant sid ... |
||||||
| Ransomware | www.gillette-ac.com id21889 View details | United States | Communication / Marketing | — | ||
|
Gillette Air Conditioning Company, USA specializes in air conditioning, heating, refrigeration, and boilers for commercial and industrial facilities. The company prides itself on safety, quality, and productivity, utilizing advanced technolog ... |
||||||
| Ransomware | Spohn + Burkhardt GmbH & Co KG id21887 View details | Germany | Communication / Marketing | — | ||
|
At Spohn + Burkhardt, Germany produce custom control transmitters, control systems and resistors that are robust and comfortable. These are highly customized and complex products that are often designed and manufactured in a single piece. On ... |
||||||
| Ransomware | seabridge.eu+efico.com id21883 View details | Belgium | Transportation / Travel / Logistics | — | ||
|
Seabridge, Belgium is a logistics service center and distribution platform for green coffee. They buy coffee from other countries and bring it to Europe. The company says it operates to green eco-standards and also “acts as an example of wo ... |
||||||
| Ransomware | Nissan CBI id21880 View details | Japan | Communication / Marketing | — | ||
|
The "Nissan Creative Box" refers to a design studio in Tokyo, previously known as a satellite design base for Nissan, and is now part of the larger Nissan design network. It is located in the Harajuku district of Tokyo. The studio was est ... |
||||||
| Ransomware | Fullerton Surgical Center (FSC) id21876 View details | United States | Healthcare / Pharma | — | ||
|
Fullerton Surgical Center, USA, is a surgical clinic offering services in general surgery, orthopedics, otolaryngology, plastic surgery, pain management, urology, and gastroenterology. Of course, all these services cost a fortune, and the US ... |
||||||
| Ransomware | welldone.com.tw id21870 View details | Taiwan, Province of China | Finance / Legal / Insurance | — | ||
|
Welldone Company is the first legal remittance company for migrant workers in Taiwan: Approved by the Financial Supervisory Commission to conduct financial technology innovation experiments for migrant workers’remittances in 2018. Obtai ... |
||||||
| Ransomware | DAOR E&C Co., Ltd id21867 View details | Korea, Republic of | Manufacturing / Engineering | — | ||
|
DAOR E&C Co., Korea is a company engaged in the production and construction of concrete structures: concrete bridges, large cable-stayed bridges, liquefied natural gas tanks, underground tunnels, and heavy lifting structures. Over 40 years of ... |
||||||
| Ransomware | lee-irvine.com id21865 View details | United States | Communication / Marketing | — | ||
|
Lee & Associates Irvine Inc. is a law firm specializing in representing clients in the acquisition, sale, and leasing of various commercial real estate properties, including industrial, office, retail, and medical properties. 1.The document ... |
||||||
| Ransomware | haaker.com id21864 View details | United States | Manufacturing / Engineering | — | ||
|
Haaker Equipment Company manufactures sweepers, sludge suction machines, and spare parts for them. The company was founded in 1972 and is headquartered in Los Angeles, California. 1.The document is invoice No. 3300290201 from Nilfisk Inc., i ... |
||||||
| Ransomware | insoca.es id21863 View details | Spain | Energy | — | ||
|
A family-owned business with a high level of technology in the corrugated cardboard sector. 1.The document is a gas bill from DISA ENERGY S.L.U. to Cartonajes Izquierdo S.A. for the period from June 1, 2025, to June 30, 2025. 2.This is the ... |
||||||
| Ransomware | netfusionconsulting.com id21862 View details | United States | Services | — | ||
|
NetFusion Consulting, Inc. is California's largest company specializing in IT integration in the medical and dental fields, specializing in IT consulting and integration specifically for dentists. The company offers a wide range of services, ... |
||||||
| Ransomware | garnertrucking.com id21861 View details | United States | Transportation / Travel / Logistics | — | ||
|
Garner is a company specializing in dry freight transportation, located in northwestern Ohio. 1.The document dated June 2, 2025, is the annual report on school tax withholdings in Ohio for 2021 for Garner Contract Maintenance. 2.The documen ... |
||||||
| Ransomware | idscorporation.com id21860 View details | Japan | Manufacturing / Engineering | — | ||
|
It is a systems engineering company providing consulting, design, and manufacturing services for a wide range of airborne and ground-based unmanned systems. 1.Technical appendix with a statement of compliance with the requirements of the Ken ... |
||||||
| Ransomware | Inotiv, Inc id21827 View details | United States | Healthcare / Pharma | — | ||
|
Inotiv, Inc. is a publicly USA traded contract research organization (CRO) that provides nonclinical and analytical drug discovery and development services to the pharmaceutical and medical device industries.As a leading contract research org ... |
||||||
| Ransomware | Uganda Electricity Transmission Company Limited id21819 View details | Uganda | Energy | — | ||
|
Uganda Electricity Transmission Company Limited organizes the delivery of electricity within the country and to nearby countries. the company actively cooperates with other countries such as the USA. UETCL buys technology and equipment from t ... |
||||||
| Ransomware | apderm.com id21818 View details | United States | Healthcare / Pharma | — | ||
|
APDerm is the largest physician-owned dermatology clinic in New England, with 25 locations in New Hampshire, Massachusetts, and Rhode Island. The company offers a full range of innovative medical, surgical, and cosmetic procedures to help pat ... |
||||||
| Ransomware | Welcome Financial Group id21808 View details | Hong Kong | Finance / Legal / Insurance | — | ||
|
Welcome Financial Group, Korea is a huge ecosystem operating in the finance industry. The group provides banking, digitalization, payments, integrated asset management, distressed loans, residential leasing, and startup financing services to ... |
||||||
| Ransomware | ethicalpackaging.co.uk id21766 View details | United Kingdom | Communication / Marketing | — | ||
|
Ethical Packaging, UK, is a company that provides printing services and packaging production. The company works with world-renowned brands such as Hermes and the Ferrero Group. Thanks to the publication of the company's internal data, anyone ... |
||||||
| Ransomware | Xperthair id21765 View details | Philippines | Communication / Marketing | — | ||
|
Xpert Professional, Ireland is one of the most well-known companies in the country that sells hair and face cosmetics. Girls, this information is for you. If you have bought cosmetics here, all your information (name, home address, date of bi ... |
||||||
| Ransomware | marma.com.pl id21750 View details | Poland | Communication / Marketing | — | ||
|
MARMA Polskie Folie is one of the largest plastics processors in Europe. The company produces products for agriculture, horticulture, construction and packaging industries. Internally, the company employs more than 1,000 people. On 08/8/25, t ... |
||||||
| Ransomware | Morgenstern AG id21770 View details | Switzerland | Communication / Marketing | — | ||
|
Morgenstern AG, Germany specializes in providing comprehensive print and document solutions, including consulting services and digital workspace implementations. On August 7, the company's website reported that it had “successfully repelled ... |
||||||
| Ransomware | L-Pimenta (etdeletronics) id21745 View details | Portugal | Construction / Real Estate | — | ||
|
L-Pimenta is a company that repairs and constructs buildings and buildings in Portugal. Some of the buildings are sold after renovation to generate profit. However, the new owners are not always happy with such a purchase. Published documents ... |
||||||
| Ransomware | www.captrade.com id21744 View details | United States | Services | — | ||
|
Capital Trade, Incorporated, based in Washington, D.C., is the real force behind the crazy policy of raising US tariffs. The company provides legal services in the field of international trade and litigation support. They help the US governme ... |
||||||
| Ransomware | liabergamo.it id21743 View details | Italy | Services | — | ||
|
A large union of businessmen from Bergamo and other cities in the country, which threatened the existence of dozens of Italian companies. The association wanted to unite businessmen in order to sell them services in the areas of labor relatio ... |
||||||
| Ransomware | smefazur.fr id21742 View details | France | Manufacturing / Engineering | — | ||
|
SMEF AZUR, France, is a company operating in the field of climate engineering. The company deals with all technical aspects of construction: refrigeration, air conditioning, and multi-functional services. This means it has detailed drawings a ... |
||||||
| Ransomware | Charak Center for Health id21721 View details | United States | Healthcare / Pharma | — | ||
|
Charak Health and Wellness Center, USA: an organization providing mental health services and treatment for alcoholism and drug addiction. The widest range of psychiatric services in northeastern Ohio. The publication of internal company data ... |
||||||
| Ransomware | ffs.com id21720 View details | Spain | Hospitality / Food & Beverage / Tourism | — | ||
|
Flavor & Fragrance Specialties is now a Lucta brand specializing in flavorings for coffee and other beverages. Our dedicated teams in the US will continue to provide unique market insights and customized flavor and fragrance solutions for our ... |
||||||
| Ransomware | Ahtna Incorporated id21716 View details | United States | Construction / Real Estate | — | ||
|
Ahtna Inc., provides construction and integrated services. The company is headquartered in Glennallen, Alaska. Ahtna, Incorporated is Alaska Native Regional Corporations established by Congress under terms of the Alaska Native Claims Settleme ... |
||||||
| Ransomware | bvasd.net id21708 View details | United States | Education | — | ||
|
The Belle Vernon Area School District (BVASD) is a medium-sized public school district located approximately 40 minutes southeast of Pittsburgh in Westmoreland and Fayette counties, Pennsylvania.Formed in 1965 through the merger of the Belmar ... |
||||||