Ransomware Group intelligence
Thegentlemen
ActiveTrack Thegentlemen with 1098 published victims and 2 known leak locations in a single intelligence view.
Overview
Thegentlemen is tracked by Breach House as a ransomware group with 1098 published victims.
United States is currently the most targeted country in this dataset.
2 known leak locations are currently associated with this group.
Leak Status Distribution
No leak-status data available yet.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (2)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 2 | Onion service | Down checked 22m ago | i2ohjeeqe37jre4f2u7pyq73cbm6lecumdxapkvrlryna6rc3it4zsid.onion |
| Leak location 1 | Onion service | Down checked 23m ago | tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion |
Top Activity Sectors (20)
- IT 118
- Manufacturing / Engineering 104
- Communication / Marketing 88
- Healthcare / Pharma 68
- Retail / E-commerce 57
- Finance / Legal / Insurance 50
- Construction / Real Estate 48
- Services 44
- Transportation / Travel / Logistics 30
- Not identified 27
- Agriculture / Food 23
- Education 22
- Public Sector 20
- Energy 18
- NGOs / Associations 12
- Hospitality / Food & Beverage / Tourism 12
- Telecommunications 6
- Media / Entertainment 1
- Law Enforcement / Public Sector 1
- Research 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Thegentlemen, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
T1059.001 PowerShell Execution
What they do: thegentlemen executes PowerShell scripts to run payload logic, disable defenses, and propagate across systems.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
What they do: thegentlemen modifies registry run keys and startup locations to maintain persistence after reboots.
What that means: Adversaries may interact with the Windows Registry as part of a variety of other techniques to aid in defense evasion, persistence, and execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: thegentlemen disables or modifies security tools such as EDR and AV processes to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1070.004 File Deletion Stealth
What they do: thegentlemen deletes Volume Shadow Copies and backup artifacts via system commands to prevent recovery.
What that means: Adversaries may delete files left behind by the actions of their intrusion activity.
-
T1003.001 LSASS Memory Credential Access
What they do: thegentlemen accesses LSASS memory to steal credentials for lateral movement and privilege escalation.
What that means: Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).
-
T1135 Network Share Discovery Discovery
What they do: thegentlemen uses network share discovery to locate victim file shares and map accessible storage paths for encryption.
What that means: Adversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of interest for Lateral Movement.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: thegentlemen uses SMB/Windows Admin Shares for lateral movement between networked hosts in manufacturing and IT environments.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1486 Data Encrypted for Impact Impact
What they do: thegentlemen encrypts victim files and data stores using ransomware payloads to maximize impact and extortion pressure.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: thegentlemen calls system recovery inhibitors to block restore processes and harden ransomware impact.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
-
T1491.001 Internal Defacement Impact
What they do: thegentlemen performs internal defacement by replacing victim files with ransom notes and altered content.
What that means: An adversary may deface systems internal to an organization in an attempt to intimidate or mislead users, thus discrediting the integrity of the systems.
Tools Observed (64)
▼Software Thegentlemen has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Credential theft
Defense evasion
Discovery
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
OffSec
Offensive security tooling
RMM Tools
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (3)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README-GENTLEMEN_3.txt
[snip] = YOUR ID Gentlemen, your network has been encrypted. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. In addition, it will be reported to the relevant data protection authorities and regulators. This may result in official investigations, significant fines, and reputational damage for your company. 6. We guarantee 100% file recovery to their original state, bit by bit. To demonstrate the quality of our work, you can provide three sample files, and we will restore them free of charge. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): 13343E50C1B3466F0EA35B5B3E55A044CB7132FD28A8665EFEA0E5848E276D548C21B79F15C2 Download Tox messenger: https://tox.chat/download.html Contact us (add via SimpleX): https://smp14.simplex.im/a#4mlOiePV8NBXOv2QrZ9CaPeRPm1mBUgxn4SdpFnm978 Download SimpleX https://simplex.chat/downloads/ СONTACT TO PREVENT DATA LEAK (7 DAYS BEFORE YOUR COMPANY DATA WILL BE PUBLISHED IN OUR BLOG, WITH 239 HOURS REVEAL TIMER) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Follow us on X: https://x.com/TheGentlemen26 Clearnet blog link: https://thegentlemen.cc/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website. After adding (us) in Tox or Session, please wait for your request to be processed and stay online. If you do not receive a reply within 36 hours, create another account and contact us again. In your first message in chat, immediately provide your ID from the note and the name of your organization. Assign one person as contact responsible for all negotiations. Do not create multiple chats. We have stolen more than 100 GB of your corporate information from your servers, including critically important data. Your company is facing a massive information security breach. A total data leak has occurred. This greatly increases the risk of colossal financial and reputational losses.
README-GENTLEMEN_2.txt
[snip] = YOUR ID Gentlemen, your network has been encrypted. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. In addition, it will be reported to the relevant data protection authorities and regulators. This may result in official investigations, significant fines, and reputational damage for your company. 6. We guarantee 100% file recovery to their original state, bit by bit. To demonstrate the quality of our work, you can provide three sample files, and we will restore them free of charge. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): 98C132E2B20B531BE6604397D97040C1E9EB42FCE12EDF119BCE8B4031CA5C70DAF5E65FA3C3 Download Tox messenger: https://tox.chat/download.html Contact us (add via Session ID): 05809b2da1d5b1a302f48b5767fd1843d54f3c516f9ab0eb26b544ffa73340292e Download Session https://getsession.org СONTACT TO PREVENT DATA LEAK (7 DAYS BEFORE YOUR COMPANY DATA WILL BE PUBLISHED IN OUR BLOG, WITH 239 HOURS REVEAL TIMER) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Follow us on X: https://x.com/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website. After adding (us) in Tox or Session, please wait for your request to be processed and stay online. If you do not receive a reply within 36 hours, create another account and contact us again. In your first message in chat, immediately provide your ID from the note and the name of your organization. Assign one person as contact responsible for all negotiations. Do not create multiple chats.
README-GENTLEMEN.txt
[snip] = YOUR ID Gentlemen, your network is under our full control. All your files are now encrypted and inaccessible. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): F8E24C7F5B12CD69C44C73F438F65E9BF560ADF35EBBDF92CF9A9B84079F8F04060FF98D098E Download Tox messenger: https://tox.chat/download.html COOPERATE TO PREVENT DATA LEAK (239 HOURS LEFT) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (1098)
Search, filter and paginate the victim timeline for Thegentlemen. Showing 401–500 of 1098.
| Type | Target | Discovered | Country | Business Category | Intel Link | Leak status |
|---|---|---|---|---|---|---|
| Ransomware | Comet Enterprise Corp id30596 View details | Taiwan, Province of China | Manufacturing / Engineering | — | — | |
|
***.com.tw zoominfo.com/c/comet-enterprise-corp/425713239 leading Taiwanese industrial bearing distributor founded in 1973, serving as one of the major authorized distributors of the Schaeffler Group's FAG and INA brands in Taiwan. The company provides high-quality precision bearings for machine tools, power machinery, and equipment maintenance, backed by comprehensive factory technical support. With its headquarters in New Taipei City and branches across Taiwan, China, and Thailand, it offers extensive inventory and one-stop procurement solutions to help clients minimize equipment downtime and maintenance costs |
||||||
| Ransomware | Landesbibliothek Coburg id30597 View details | Germany | Education | — | — | |
|
Landesbibliothek Coburg is a public library located in Coburg, Germany, serving the local community with various educational resources and services. As part of the education sector in Germany, it provides access to a wide range of books, media, and other materials. Landesbibliothek Coburg was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Landesbibliothek Coburg id30597 View details | Germany | Education | — | — | |
|
***.de zoominfo.com/c/landesbibliothek-coburg/429940598 regional state scientific library in Bavaria, Germany, originally founded in 1547. Located in the historic Ehrenburg Palace in Coburg, it houses a vast collection of around 500,000 volumes, including rare manuscripts, incunabula, and the historical book collections of the former Dukes of Coburg. Since 1973, the library has been administered by the Free State of Bavaria, serving as a vital cultural and research institution dedicated to preserving the region's historical heritage |
||||||
| Ransomware | ALUFE Femszerkezeti Kft id30598 View details | Hungary | Manufacturing / Engineering | — | — | |
|
Alufe.hu is a Hungarian company operating in the manufacturing and engineering sector. The company is based in Hungary and provides various services and products related to its sector. Alufe.hu was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | ALUFE Femszerkezeti Kft id30598 View details | Hungary | Manufacturing / Engineering | — | — | |
|
***.hu zoominfo.com/c/alufe-fémszerkezeti-kft/452408141 Hungarian manufacturing and construction company based in Székesfehérvár, with a history of aluminum production dating back to 1968. The company specializes in manufacturing and installing aluminum windows, doors, curtain walls, and complex facade systems, including steel, glass, and ceramic structures. With around 150 employees, it provides comprehensive, high-quality metal structure solutions for commercial and architectural projects across the region |
||||||
| Ransomware | Tooltec id30599 View details | Sweden | Manufacturing / Engineering | — | — | |
|
Tooltec.se is a company based in Sweden, operating in the manufacturing and engineering sector. The company likely provides various products and services related to its sector. Tooltec.se was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Tooltec id30599 View details | Sweden | Manufacturing / Engineering | — | — | |
|
***.se zoominfo.com/c/tooltec-ab/371817746 advanced manufacturing company based in Trollhättan, Sweden, specializing in the precision machining of complex components. The company utilizes technologies like 5-axis milling, turning, and Wire EDM to produce high-quality parts for the automotive, energy, aeronautical, and aerospace industries. As an ISO 9001 certified supplier, Tooltec is recognized for its strict quality standards, delivery reliability, and commitment to long-term partnerships with both clients and employees |
||||||
| Ransomware | Terra Vitis id30600 View details | France | Agriculture / Food | — | — | |
|
Terravitis.com operates in the agriculture and food sector in France, providing various offerings to its customers. As a company in this sector, it plays a role in the country's food production and distribution. Terravitis.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Terra Vitis id30600 View details | France | Agriculture / Food | — | — | |
|
***.com zoominfo.com/c/terra-vitis/447256156 French national certification for sustainable and responsible winegrowing, founded in 1998 by a group of committed Beaujolais winegrowers. It is the only national certification specifically dedicated to the wine sector and is officially recognized by the French Ministry of Agriculture and Food. The association unites nearly 2,000 members across France, guaranteeing environmentally friendly, socially responsible, and economically viable practices from vine to wine glass through strict annual audits |
||||||
| Ransomware | Vignobles Toutigeac id30601 View details | France | Other | — | — | |
|
Toutigeac.com is a French entity operating in the other sector, providing various offerings. Located in France, the entity is part of a diverse range of organizations in the country. Toutigeac.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Vignobles Toutigeac id30601 View details | France | Other | — | — | |
|
***.com zoominfo.com/c/vignobles-toutigeac/456813413 Vignobles Toutigeac family-run wine estate located in Targon, within the Bordeaux and Entre-Deux-Mers appellations in France. Originally an ecclesiastical property managed by monks, the estate now spans approximately 42 hectares of vineyards under the guidance of Oriane and Philippe Mazeau. The winery produces classic red and white Bordeaux wines, recognized for their smooth tannins and balanced fruit profiles, successfully blending historical tradition with modern winemaking practices |
||||||
| Ransomware | Dink Co Ltd id30602 View details | Japan | IT | — | — | |
|
Dink.co.jp is a Japanese company operating in the IT sector, providing various services and solutions. Located in Japan, the company is involved in the IT industry, offering a range of products and services. Dink.co.jp was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Dink Co Ltd id30602 View details | Japan | IT | — | — | |
|
***.co.jp zoominfo.com/c/dink-co-ltd/1340493249 Osaka-based Japanese company specializing in the development, design, and sale of wastewater treatment systems specifically for cardboard manufacturing plants. Originally founded as a cardboard printing ink manufacturer, the company leveraged its industry knowledge to transform into a dedicated water treatment equipment specialist in 2021. Today, their eco-friendly systems are installed and operational in over 430 factories across Japan, helping to clean industrial wastewater to safe environmental levels |
||||||
| Ransomware | Lsn id30604 View details | IT | — | — | ||
|
lsn.io operates in the IT sector, providing various services. The company's specific offerings and location are not publicly disclosed. lsn.io was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Lsn id30604 View details | IT | — | — | ||
|
***.io zoominfo.com/c/lsn/557824732 software development company specializing in tailor-made IT solutions for the insurance industry. Founded in 2008 as Logisfera Nova and rebranded in 2020, the company provides full-stack services including back-office development, UX/UI design, data science, and enterprise software architecture. Headquartered in Gdańsk, Poland, with a branch in Athens, Greece, LSN partners with leading insurance sector clients to deliver agile, business-focused, and customized technological solutions |
||||||
| Ransomware | Lsn id30604 View details | Poland | IT | — | — | |
|
***.io zoominfo.com/c/lsn/557824732 software development company specializing in tailor-made IT solutions for the insurance industry. Founded in 2008 as Logisfera Nova and rebranded in 2020, the company provides full-stack services including back-office development, UX/UI design, data science, and enterprise software architecture. Headquartered in Gdańsk, Poland, with a branch in Athens, Greece, LSN partners with leading insurance sector clients to deliver agile, business-focused, and customized technological solutions |
||||||
| Ransomware | Giraudi Group id30605 View details | Italy | — | — | — | |
|
Giraudi.com is an Italian entity, presumably operating in the IT sector. The company may offer various services or products, although specific details are not available. Giraudi.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Giraudi Group id30605 View details | Italy | — | — | — | |
|
***.com zoominfo.com/c/giraudi-group/1157060956v Monaco-based company founded in 1968, specializing in the import, export, and distribution of premium meats, including exclusive Japanese Kobe and certified Black Angus beef. Under the leadership of Riccardo Giraudi, the group has expanded into a comprehensive hospitality and lifestyle brand, owning and managing over 35 restaurants worldwide, most notably the famous Beefbar. The company also operates in the lifestyle sector with fashion, art, and premium spirits, while providing global consulting and franchising services for the food and beverage industry |
||||||
| Ransomware | Mesto Celakovice id30606 View details | Czechia | — | — | — | |
|
Celakovice.cz is the official website of the municipality of Celakovice, a town located in the Central Bohemian Region of the Czech Republic. The website provides information on local services, news, and events. Celakovice.cz was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Mesto Celakovice id30606 View details | Czechia | — | — | — | |
|
***.cz zoominfo.com/c/město-čelákovice/426355970 town in the Central Bohemian Region of the Czech Republic, situated on the Elbe River approximately 27 kilometers from Prague. With a population of around 12,000 residents, it serves as a local administrative and cultural hub. The official website functions as the primary municipal portal, offering citizens and visitors essential information, administrative services, news, and contact details for the local government |
||||||
| Ransomware | Kaneko id30607 View details | Japan | Manufacturing / Engineering | — | — | |
|
Kaneko Corp is a Japanese company operating in the manufacturing and engineering sector. The company is based in Japan and provides various products and services related to its sector. Kaneko Corp was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Kaneko id30607 View details | Japan | Manufacturing / Engineering | — | — | |
|
***.co.jp zoominfo.com/c/kaneko/540044079 Japanese software company based in Itoigawa, Niigata, specializing in construction project management solutions. For over three decades, the company has developed the CDPM series, a widely recognized software for creating and managing complex construction schedules. Recently, the company has been actively driving digital transformation in the construction industry through its advanced CDPM-X64 platform, which introduces innovative features like native JSON support and comprehensive schedule analysis tools |
||||||
| Ransomware | Byggelit Sverige id30608 View details | Sweden | — | — | — | |
|
Byggelit.se is a Swedish company operating in the construction sector, providing various services to its clients in Sweden. The company is involved in building and construction projects, offering a range of services to the Swedish market. Byggelit.se was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Byggelit Sverige id30608 View details | Sweden | — | — | — | |
|
***.se zoominfo.com/c/byggelit-sverige-ab/6046017 Swedish manufacturing company based in Lit that has been producing particleboard since 1962. They specialize in sustainable, customized particleboard component solutions, using advanced CNC technology to cut, drill, and mill panels to exact customer specifications. This approach minimizes on-site labor and waste while promoting a circular economy by recycling production scraps into new boards |
||||||
| Ransomware | Terry P Moosmann CPA PC id30609 View details | United States | — | — | — | |
|
Terry P Moosmann CPA PC is an accounting firm based in the United States, providing financial services to clients. As a certified public accounting practice, it offers a range of services including tax preparation, auditing, and financial planning. Terry P Moosmann CPA PC was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Terry P Moosmann CPA PC id30609 View details | United States | — | — | — | |
|
Terry P. Moosmann CPA PC is a local accounting and tax preparation firm based in Washington, Missouri. Owned by Terry Moosmann, the company provides professional financial, accounting, and tax services tailored to individuals and small businesses in the surrounding communities. The firm is recognized for its personalized approach and long-standing presence in the local business community |
||||||
| Ransomware | Royal Foods id30475 View details | Australia | Hospitality / Food & Beverage / Tourism | — | — | |
|
Royalfoods.com.au is an Australian company operating in the hospitality and food and beverage sector, likely providing services to the tourism industry. The company is based in Australia and offers various food-related services. Royalfoods.com.au was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Royal Foods id30475 View details | Australia | Hospitality / Food & Beverage / Tourism | — | — | |
|
***.com.au zoominfo.com/c/royal-foods/98011908 Royal Foods is a privately-owned Australian gourmet food company that supplies high-quality, innovative products to the food service sector and independent retailers.Headquartered in Brisbane and operating across multiple states, the company employs around 250 staff dedicated to supporting the local food industry.Furthermore, their specialized Food Solutions division focuses on helping commercial kitchens solve challenges related to profitability and operational efficiency |
||||||
| Ransomware | Ferretería Scopazzo id30476 View details | Argentina | Retail / E-commerce | — | — | |
|
Scopazzo.com.ar operates in the retail and e-commerce sector in Argentina, offering various products and services to its customers. As an e-commerce platform, it provides online shopping experiences for users. Scopazzo.com.ar was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Ferretería Scopazzo id30476 View details | Argentina | Retail / E-commerce | — | — | |
|
***.com.ar rocketreach.co/ferreteria-scopazzo-profile_b7dd5f00c0ca3ccc Ferretería Scopazzo is a prominent family-owned hardware and industrial tools retailer based in Buenos Aires, Argentina, boasting over 60 years of market experience.They specialize in supplying electrical, pneumatic, and household equipment from major global brands like Makita, DeWalt, and Bosch to both individuals and businesses |
||||||
| Ransomware | Fortray id30477 View details | IT | — | — | ||
|
Fortray.com is a company operating in the IT sector. The company provides various services, although specific details about its offerings are not readily available. Fortray.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Fortray id30477 View details | IT | — | — | ||
|
***.com zoominfo.com/c/fortray-global-services-ltd/446823730 Fortray Global Services Limited is a UK-based IT company founded in 2011 that operates across tech education, managed IT services, and global recruitment.They offer specialized Tech and AI bootcamps with 1:1 mentorship to help individuals build in-demand digital skills and launch successful tech careers.Furthermore, they act as a Managed Service Provider (MSP) delivering scalable cloud solutions and cybersecurity to businesses.Simultaneously, their recruitment division connects ambitious IT professionals with top job opportunities worldwide |
||||||
| Ransomware | Martin Cava id30478 View details | Spain | Other | — | — | |
|
Martincava.com is an entity based in ES, operating in the other sector. The company likely provides various services, given its sector classification. Martincava.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Martin Cava id30478 View details | Spain | Other | — | — | |
|
***.com zoominfo.com/c/martin-cava-sa/366183664 Martin Cava S.A. is a prominent Argentine supplier of equipment, specialty papers, and consumables for the graphic and printing industry, boasting nearly 90 years of market experience.Based in Buenos Aires, they distribute a wide array of products including HP plotters, inks, holographic vinyls, and offset printing materials.The company is highly regarded for offering innovative solutions that allow businesses to personalize garments, promotional items, and various surfaces |
||||||
| Ransomware | Aveiro Constructors Limited id30479 View details | Portugal | Construction / Real Estate | — | — | |
|
Aveiroconstructors.com is a company based in Portugal, operating in the construction and real estate sector, providing various services to clients. The company's offerings likely include construction management, real estate development, and related services. Aveiroconstructors.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Aveiro Constructors Limited id30479 View details | Portugal | Construction / Real Estate | — | — | |
|
***.com Aveiro Constructors Limited is a Canadian general contractor established in 1976 and headquartered in Southwestern Ontario. The company specializes in the Industrial, Commercial, and Institutional (ICI) sectors, delivering design-build, new construction, and renovation projects both locally and internationally. Originally starting with pre-engineered steel buildings, they have grown over the decades into a comprehensive construction firm offering specialized services like HVAC and project management |
||||||
| Ransomware | Triquesta id30480 View details | Mexico | IT | — | — | |
|
Triquesta.com is an IT company based in Mexico, providing various IT services. The company operates in the IT sector, offering solutions to its clients. Triquesta.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Triquesta id30480 View details | Mexico | IT | — | — | |
|
***.com zoominfo.com/c/triquesta-pte-ltd/346670373 Triquesta is a Singapore-based fintech company specializing in collateral, compliance, and risk management software for structured commodity finance.Founded by seasoned banking professionals, the firm provides cutting-edge technology that helps global banks and direct lenders reliably track assets and mitigate risks.With a strong international presence across Europe and Australia, their solutions empower financial institutions to navigate complex commodity markets efficiently |
||||||
| Ransomware | Vicenzi Group id30481 View details | Italy | Agriculture / Food | — | — | |
|
Vicenzi.it operates in the agriculture and food sector in Italy, providing various offerings to its customers. As a company in this sector, vicenzi.it plays a role in the country's food production and distribution. Vicenzi.it was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Vicenzi Group id30481 View details | Italy | Agriculture / Food | — | — | |
|
***.it zoominfo.com/c/vicenzi-spa/1101977046 Vicenzi Group, founded in 1905 by Matilde Vicenzi, is a historic Italian confectionery company renowned for producing high-quality biscuits and traditional pastries. Based in Verona, the family-owned business has grown into a global brand dedicated to becoming the world leader in premium Italian sweet treats. The company employs hundreds of people and successfully combines authentic recipes with modern sustainable practices to deliver its products to international markets |
||||||
| Ransomware | Energon id30482 View details | Czechia | Energy | — | — | |
|
Energon.cz operates in the energy sector in the Czech Republic, providing various energy-related services. As a key player in the country's energy landscape, the company's activities are crucial to the sector's overall functioning. Energon.cz was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Energon id30482 View details | Czechia | Energy | — | — | |
|
***.cz zoominfo.com/c/energon/430910504 ENERGON HOLDING is a prominent Czech group uniting various companies specialized in energy services, photovoltaics, and modern sustainable technologies. With over 25 years of industry experience, the group drives innovations that enhance the energy independence and competitiveness of the Czech Republic. They also actively invest in startups focused on renewable energy optimization, diagnostics, and the security of power infrastructure |
||||||
| Ransomware | Open Options id30483 View details | Ireland | IT | — | — | |
|
ooaccess.com is an IT company based in Ireland, providing various IT services. The company operates in the IT sector, offering services to clients in Ireland. ooaccess.com was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Open Options id30483 View details | Ireland | IT | — | — | |
|
***.com Open Options was a prominent Texas-based software company specializing in open-architecture access control solutions, best known for its flagship enterprise platform, DNA Fusion. The company focused on delivering scalable physical security and identity management software tailored to complex organizational needs. Following a strategic acquisition, the company's technology and brand were integrated into Acre Security, where it continues to operate and evolve as DNA Fusion by acre security |
||||||
| Ransomware | INTERNET AG id30484 View details | Germany | IT | — | — | |
|
inet.de is a German IT company providing various services in the information technology sector. Located in Germany, the company operates in the IT industry, offering a range of solutions. inet.de was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | INTERNET AG id30484 View details | Germany | IT | — | — | |
|
***.de zoominfo.com/c/inet/429716454 INTERNET AG is a professional German IT service provider specializing in reliable, sustainable, and flexible hosting and server solutions. The company delivers customized IT infrastructures, managed services, and global network connectivity tailored to complex business needs. Alongside its partner INTERNIC GmbH, it offers comprehensive enterprise software and secure digital operations for corporate clients |
||||||
| Ransomware | Crossroads Medical Management id30485 View details | United States | Healthcare / Pharma | — | — | |
|
Crossroads Medical Management is a healthcare company based in the US, operating in the medicine sector. The company provides medical management services. Crossroads Medical Management was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Crossroads Medical Management id30485 View details | United States | Healthcare / Pharma | — | — | |
|
***.com zoominfo.com/c/crossroads-medical-management-llc/354034077 Crossroads Medical Management is a healthcare management company headquartered in Perry, Georgia, specializing in full-service financial, clinical, and operations management for the senior community. As a legacy organization with three generations of experience, they focus on providing quality-oriented care and a home-like environment across multiple affiliated skilled nursing facilities. Operating primarily in states like Georgia, the company manages several senior care centers, generating an estimated annual revenue of over $12 million while expanding to meet the evolving needs of elderly residents |
||||||
| Ransomware | Pharma Wholesale id30486 View details | Healthcare / Pharma | — | — | ||
|
Pharmawholesale.com operates in the healthcare and pharmaceutical sector, potentially offering wholesale pharmaceutical products and services. The entity's specific location and offerings are not publicly disclosed. Pharmawholesale.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Pharma Wholesale id30486 View details | Healthcare / Pharma | — | — | ||
|
***.com zoominfo.com/c/pharma-wholesale/353577758 Pharma Wholesale Corp. is a licensed pharmaceutical wholesaler and distributor headquartered in Florida, USA, with over 24 years of industry experience. The company specializes in the global distribution of prescription and OTC medications, vitamins, supplements, and health and beauty products. Operating as a mid-sized enterprise, they supply affordable healthcare solutions to pharmacies and medical facilities both domestically and internationally |
||||||
| Ransomware | Pharma Wholesale id30486 View details | United States | Healthcare / Pharma | — | — | |
|
***.com zoominfo.com/c/pharma-wholesale/353577758 Pharma Wholesale Corp. is a licensed pharmaceutical wholesaler and distributor headquartered in Florida, USA, with over 24 years of industry experience. The company specializes in the global distribution of prescription and OTC medications, vitamins, supplements, and health and beauty products. Operating as a mid-sized enterprise, they supply affordable healthcare solutions to pharmacies and medical facilities both domestically and internationally |
||||||
| Ransomware | Welders Supply Equipment Rentals id30487 View details | United States | Construction / Real Estate | — | — | |
|
WS Rentals operates in the construction and real estate sector in the United States, providing various services and offerings to clients. The company is involved in rental properties and construction projects, catering to the needs of its customers. WS Rentals was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Welders Supply Equipment Rentals id30487 View details | United States | Construction / Real Estate | — | — | |
|
***.com zoominfo.com/c/welders-supply--equipment-rentals/355927450 WSE Rentals (Welders Supply & Equipment Rentals) is a specialized equipment rental company headquartered in Port Allen, Louisiana. They focus on providing a comprehensive range of high-quality, reliable welding tools and machinery from well-known industry brands for various industrial projects. The company serves contractors and businesses by offering tailored rental solutions and dedicated delivery services to support their operational needs |
||||||
| Ransomware | VASBE id30488 View details | Russian Federation | IT | — | — | |
|
Vasbe.com is an IT company based in Russia, providing various IT services. The company operates in the IT sector, offering its services to clients. Vasbe.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | VASBE id30488 View details | Russian Federation | IT | — | — | |
|
***.com zoominfo.com/c/vigilantes-asociados-al-servicio-de-banca-y-empresas-vasbe-sl/458305259 VASBE Vigilantes Asociados Al Servicio De Banca Y Empresas Vasbe is a well-established Spanish private security and surveillance company with over 30 years of industry experience. Based primarily in the Salamanca region, they provide comprehensive protection solutions including physical guarding, 24/7 central alarm monitoring, and advanced video surveillance. The company specializes in designing customized security plans to safeguard businesses, financial institutions, and valuable assets around the clock. |
||||||
| Ransomware | Gene Codes Forensics id30489 View details | United States | Healthcare / Pharma | — | — | |
|
Genecodesforensics.com is a US-based company operating in the healthcare and medicine sector, providing services related to genetic coding and forensic analysis. The company is likely involved in the analysis of genetic data for medical and research purposes. Genecodesforensics.com was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Gene Codes Forensics id30489 View details | United States | Healthcare / Pharma | — | — | |
|
***.com zoominfo.com/c/gene-codes-forensics-inc/1208843964 Gene Codes Forensics is a Michigan-based technology company and a global leader in disaster victim identification and human DNA matching. They provide specialized forensic software, such as Sequencher and M-FISys, which are utilized by numerous states and countries as central DNA resources for identifying remains in mass disasters. In addition to providing software and consulting services, the company operates a one-million-dollar Humanitarian Grant Program to support non-profit organizations conducting forensic DNA testing |
||||||
| Ransomware | Lopes Law id30490 View details | United States | Finance / Legal / Insurance | — | — | |
|
Lopes Law LLC is a US-based company operating in the finance, legal, and insurance sector, providing various services to its clients. The company is located in the United States and offers expertise in legal and financial matters. Lopes Law LLC was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | Lopes Law id30490 View details | United States | Finance / Legal / Insurance | — | — | |
|
***.com zoominfo.com/c/lopes-law-llc/449811320 Lopes Law LLC is a Philadelphia-based law firm founded by Anthony Lopes that specializes in franchise law, representing both franchisees and franchisors nationwide. The firm provides comprehensive legal services including Franchise Disclosure Document (FDD) reviews, franchise agreement negotiations, and dispute resolution using transparent flat-fee pricing. In addition to franchise expertise, the practice acts as fractional general counsel for businesses and offers specialized tax law services to help companies navigate complex legal landscapes |
||||||
| Ransomware | Carita id30491 View details | France | Retail / E-commerce | — | — | |
|
Carita.com operates in the retail and e-commerce sector, offering various products to customers in France. As an e-commerce company, carita.com provides online shopping experiences, leveraging digital platforms to reach its customer base. Carita.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Carita id30491 View details | France | Retail / E-commerce | — | — | |
|
***.com zoominfo.com/c/carita/358348689 Carita is a prestigious French luxury skincare brand founded in 1945, renowned for its professional-grade beauty treatments and high-end cosmetics. Now part of L'Oréal's Luxury Division following its acquisition from Shiseido in 2022, the brand operates globally with a focus on exceptional skincare rituals and personalized beauty experiences. Available in over 130 countries, Carita combines innovative formulations with artisanal expertise, generating annual revenue in the range of $9-10 million for its core operations |
||||||
| Ransomware | BDO Greece id30492 View details | Greece | Finance / Legal / Insurance | — | — | |
|
BDO Greece is a financial and legal services provider based in Greece, offering audit, tax, and advisory services to clients. As a member of the global BDO network, the firm operates in the finance, legal, and insurance sectors. BDO Greece was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | BDO Greece id30492 View details | Greece | Finance / Legal / Insurance | — | — | |
|
***.gr zoominfo.com/c/bdo-certified-public-accountants-sa/372555588 BDO Greece is a leading Athens-based accounting, tax, and advisory firm that operates as a member of the global BDO network. The company provides comprehensive audit, assurance, and business consulting services to a diverse range of industries, including real estate, hospitality, and the public sector. Employing between 50 and 200 professionals, the firm generates an estimated annual revenue of over $23 million while helping clients navigate complex financial and regulatory landscapes |
||||||
| Ransomware | Dash Door Glass id30493 View details | United States | IT | — | — | |
|
Dashdoor.com is an IT company based in the United States, providing various services within the IT sector. As a US-based entity, dashdoor.com operates in a highly competitive market, offering solutions to its clients. Dashdoor.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Dash Door Glass id30493 View details | United States | IT | — | — | |
|
***.com Dash Door & Glass is a prominent commercial contractor and facility support specialist headquartered in Doral, Florida, with a rich history dating back to 1955. The company specializes in the supply, installation, and maintenance of commercial doors, glass, and architectural hardware for large-scale construction projects across South Florida. Operating with a dedicated team of professionals, the firm has established itself as a major industry player, generating an impressive annual revenue of approximately $113.3 million |
||||||
| Ransomware | Shamrock Holdings Inc. id30327 View details | United States | IT | — | — | |
|
Zoominfo is a leading provider of go-to-market intelligence, offering a platform that delivers contact and company data to businesses. Based in the US, the company operates in the IT sector, helping organizations with sales, marketing, and recruiting efforts. Zoominfo was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Shamrock Holdings Inc. id30327 View details | United States | IT | — | — | |
|
https://en.wikipedia.org/wiki/Shamrock_Holdings https://www.***.com/c/shamrock-holdings-inc/102187761 https://www.***.com/c/shamrock-capital-advisors-llc/80380310 https://www.shamrock.com/ Shamrock Holdings, Inc. is an investment firm founded by Roy E. Disney in 1978, primarily serving the investment needs of the Disney Family. The company emphasizes integrity, responsibility, and transparency in its operations. In addition to its investment activities, Shamrock manages various real estate investment programs through a subsidiary. Its intended clients include members of the Roy E. Disney Family and other potential investors in real estate. Assets Under Management: The firm manages over $6.6B in assets across entertainment IP, media rights, and private equity . Included 2021-2026 Stanley Gold inbox(80778) and sent(21617) |
||||||
| Ransomware | Medic Rescue id30328 View details | United States | NGOs / Associations | — | — | |
|
Medic Rescue is a US-based non-governmental organization operating in the healthcare sector, providing medical rescue services. The organization is part of the NGOs and associations sector, offering various services to the community. Medic Rescue was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Medic Rescue id30328 View details | United States | NGOs / Associations | — | — | |
|
https://www.***.org/ https://www.zoominfo.com/c/medic-rescue/47367866 Medic Rescue Services has been providing trusted emergency medical services to Beaver County since 1978. They offer a range of services including on-site emergency care, non-emergency transports, stretcher van trips, and wheelchair van services, all available 24/7. Their dedicated team and extensive fleet ensure swift and effective responses to medical needs. Medic Rescue aims to prioritize health and safety while fostering community trust through their reliable service |
||||||
| Ransomware | LogiQuip id30329 View details | United Kingdom | Manufacturing / Engineering | — | — | |
|
Logiquip.com is a company operating in the manufacturing and engineering sector, based in the United Kingdom. The company likely provides equipment or services related to its sector. Logiquip.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | LogiQuip id30329 View details | United Kingdom | Manufacturing / Engineering | — | — | |
|
***.com zoominfo.com/c/logiquip/146752157 LogiQuip, founded in 1992, is a specialized manufacturer providing inventory management and storage solutions exclusively for the healthcare industry.They design innovative systems, such as ParWire shelving, to solve complex supply chain and distribution issues in hospitals.Ultimately, their products help medical professionals save valuable time on inventory tasks so they can focus on patient care |
||||||
| Ransomware | Virginia Historical Society id30330 View details | United States | NGOs / Associations | — | — | |
|
Virginiahistory.org is a non-profit organization based in the United States, operating in the NGOs and associations sector. The organization is dedicated to collecting, preserving, and interpreting the state's history. Virginiahistory.org offers various resources, including historical publications, educational programs, and exhibitions. It was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Virginia Historical Society id30330 View details | United States | NGOs / Associations | — | — | |
|
***.org zoominfo.com/c/virginia-historical-society/184942664 is the digital platform for the Virginia Museum of History & Culture, owned and operated by the Virginia Historical Society, a private non-profit established in 1831.It is uniquely positioned as the only museum that presents all of Virginia's history under one roof, covering all centuries, regions, and topics.The organization connects people to America's past through its exhibitions, educational programs, and extensive research collections, inspiring future generations |
||||||
| Ransomware | Quanterm Logistics Sdn Bhd id30331 View details | Malaysia | IT | — | — | |
|
Quanterm.com is an IT company based in Malaysia, providing various IT services. The company operates in the IT sector, offering its services to clients. Quanterm.com was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Quanterm Logistics Sdn Bhd id30331 View details | Malaysia | IT | — | — | |
|
***.com zoominfo.com/c/quanterm-logistics-sdn-bhd/346750206 Quanterm Logistics, founded in 1992 and headquartered in Malaysia, is a leading freight forwarding and total logistics provider in the Asia Pacific region.Starting as an international LCL consolidator, the company has expanded to offer comprehensive supply chain solutions including warehousing, distribution, and fleet management.Today, the organization serves both domestic and international markets through a wide network of offices across Malaysia, Vietnam, Australia, and other countries |
||||||
| Ransomware | Spedidam id30332 View details | France | Services | — | — | |
|
Spedidam.fr is a French company operating in the services sector. The company is based in France and provides various services to its clients. Spedidam.fr was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Spedidam id30332 View details | France | Services | — | — | |
|
***.fr Spedidam, founded in 1959 by five musical performers, is a French collective management organization that protects performers' neighboring rights.The organization manages the collection and distribution of royalties for performing artists while supporting artistic and cultural initiatives.Based in Paris, it serves as one of France's key institutions for managing intellectual property rights in music and dance |
||||||
| Ransomware | hiddeenn id30333 View details | Other | — | — | ||
|
Hiddeenn operates in the other sector, providing unspecified offerings. The entity's location and specific services are not well-documented. Hiddeenn was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | hiddeenn id30333 View details | Other | — | — | ||
|
hidddenn |
||||||
| Ransomware | Arabia Falcon Insurance Company SAOG id30334 View details | Oman | Finance / Legal / Insurance | — | — | |
|
Afic.om is an entity operating in the finance, legal, and insurance sector in Oman, providing various services to its clients. The company's specific offerings and operations are not publicly disclosed, but it is known to be part of the country's financial and legal infrastructure. Afic.om was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Arabia Falcon Insurance Company SAOG id30334 View details | Oman | Finance / Legal / Insurance | — | — | |
|
***.om zoominfo.com/c/arabia-falcon-insurance-company-saog/447137751 Arabia Falcon Insurance Company (AFIC), is a leading insurance provider in Oman formed by the historic merger of two successful local insurers.The company underwrites a comprehensive range of general, motor, medical, and life insurance products for individuals and businesses.Headquartered in Muscat, AFIC has firmly established itself as a trusted and prominent name in the Sultanate's insurance sector |
||||||
| Ransomware | Ce Ratp Comite D entreprise Ratp id30335 View details | France | Other | — | — | |
|
Ceratp.fr is a French entity operating in the other sector, providing various offerings to its clients. Located in France, ceratp.fr serves its customers with a range of services. Ceratp.fr was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Ce Ratp Comite D entreprise Ratp id30335 View details | France | Other | — | — | |
|
***.fr zoominfo.com/c/ce-ratp-comité-dentreprise-ratp/1315531566 digital platform of the RATP Works Council, dedicated exclusively to employees of the Paris public transport operator and their beneficiaries.It provides comprehensive services for social and cultural activities, allowing members to book vacations, register for summer camps, and access exclusive leisure events.Based in Fontenay-sous-Bois, the platform serves as a central hub for managing employee benefits and corporate perks |
||||||
| Ransomware | Keifert id30336 View details | Germany | Manufacturing / Engineering | — | — | |
|
Keifert.de is a company based in Germany, operating in the manufacturing and engineering sector. The company likely provides various products and services related to its sector. Keifert.de was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Keifert id30336 View details | Germany | Manufacturing / Engineering | — | — | |
|
***.de zoominfo.com/c/keifert-gmbh/429980133 Keifert GmbH master-certified building cleaning company based in Schallstadt, Germany, with over 35 years of industry experience.They offer a comprehensive range of professional services, including office, industrial, and specialized cleaning, as well as janitorial services across the Southern Baden region.As a quality-focused enterprise, the company is certified according to DIN EN ISO 9001 and 14001 standards, ensuring reliable and environmentally conscious solutions for their clients |
||||||
| Ransomware | Kosmos id30337 View details | Germany | IT | — | — | |
|
Kosmos.de is an IT company based in Germany, providing various IT services. The company operates in the IT sector, offering its services to clients in DE. Kosmos.de was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Kosmos id30337 View details | Germany | IT | — | — | |
|
***.de zoominfo.com/c/kosmos/470278755 Franckh-Kosmos Verlags-GmbH & Co. KG, a prominent media publishing house based in Stuttgart, Germany.Founded in 1822 by Johann Friedrich Franckh, the company is one of the leading publishers of guidebooks, children's books, board games, and educational experiment kits.It successfully combines long-standing tradition with modern trends to offer engaging products for children, families, and hobbyists |
||||||
| Ransomware | EBNY Development id30338 View details | Egypt | Retail / E-commerce | — | — | |
|
Ebny.com.eg is an e-commerce platform based in Egypt, operating in the retail sector and offering various products to customers. As an online shopping destination, it provides a range of goods and services to the Egyptian market. Ebny.com.eg was listed as a ransomware victim associated with thegentlemen. |
||||||
| Ransomware | EBNY Development id30338 View details | Egypt | Retail / E-commerce | — | — | |
|
***.com.eg Founded in 2012, EBNY Development is a pioneering real estate company focused on redefining the property market in Egypt and beyond. They create innovative and functional projects that combine elegant designs with thoughtful planning to elevate daily living and lifestyles. Ultimately, the company is dedicated to delivering long-lasting value and building a brighter, sustainable future for its clients |
||||||
| Ransomware | Tonnies Group id30339 View details | Germany | Agriculture / Food | — | — | |
|
Toennies.de is a German company operating in the agriculture and food sector, offering various products and services. The company is based in Germany and is involved in the production and distribution of food products. Toennies.de was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Tonnies Group id30339 View details | Germany | Agriculture / Food | — | — | |
|
***.de zoominfo.com/c/tönnies-group/427095219 Founded in 1971 as a family-owned business, the Tönnies Group is a leading German meat processing company headquartered in Rheda-Wiedenbrück.As a major global player in the food industry, it specializes in the slaughtering, butchering, and processing of pork and beef, generating around 5 billion euros in annual turnover with over 8,000 employees.Notably, the holding company is rebranding to "Premium Food Group" starting in 2025 to emphasize its focus on sustainable food solutions |
||||||
| Ransomware | Automovil Supply S.A id30340 View details | Paraguay | Retail / E-commerce | — | — | |
|
Supply.com.py operates in the retail and e-commerce sector in Paraguay, providing various products and services to customers. As an e-commerce platform, it likely offers a range of goods and services online. Supply.com.py was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Automovil Supply S.A id30340 View details | Paraguay | Retail / E-commerce | — | — | |
|
***.com.py zoominfo.com/c/automóvil-supply/405948730 Automovil Supply S.A., accessible via ***.com.py, is a prominent Paraguayan chain of auto parts stores founded on August 10, 1955.With over 70 years of experience in the automotive industry, the company employs between 200 and 500 staff members and operates multiple retail branches across Paraguay.Known for its slogan "Over 70 years moving the country," it serves as a major importer and distributor of motor vehicle parts in the region |
||||||
| Ransomware | Excel Cell Electronic id30341 View details | Taiwan, Province of China | Manufacturing / Engineering | — | — | |
|
Ece.com.tw is a company based in Taiwan, operating in the manufacturing and engineering sector. The company likely provides various products and services related to engineering and manufacturing to its clients. Ece.com.tw was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Excel Cell Electronic id30341 View details | Taiwan, Province of China | Manufacturing / Engineering | — | — | |
|
***.com.tw zoominfo.com/c/excel-cell-electronic-co-ltd/372144382 Excel Cell Electronic Co., Ltd. (ECE), founded in 1981 and headquartered in Taichung, Taiwan, is a prominent manufacturer of electronic components.The publicly traded company specializes in producing DIP switches, micro switches, relays, terminal blocks, connectors, and resettable fuses for global markets.ECE focuses heavily on product innovation and process integration to serve as a reliable strategic partner in the fast-paced electronics industry |
||||||
| Ransomware | Mercado Libre id30342 View details | Argentina | Retail / E-commerce | — | — | |
|
Mercadolibre.com.ar is a prominent e-commerce website operating in Argentina, offering a wide range of products and services to its customers in the retail sector. As a leading online marketplace, it provides a platform for buyers and sellers to interact and conduct transactions. Mercadolibre.com.ar was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | Mercado Libre id30342 View details | Argentina | Retail / E-commerce | — | — | |
|
***.com.ar zoominfo.com/c/mercadolibre-srl/425378760 Argentine platform of MercadoLibre, the undisputed leader in Latin American e-commerce and fintech, founded in 1999 by Marcos Galperin. It operates a massive online marketplace integrated with a powerful ecosystem of services, including Mercado Pago for digital payments and Mercado Envíos for logistics. As a cornerstone of Argentina's digital economy, it connects millions of buyers and sellers, driving both retail innovation and financial inclusion across the nation |
||||||
| Ransomware | CSIR Structural Engineering Research Centre id30343 View details | India | Research | — | — | |
|
Serc.res.in is a research entity based in India, operating in the research sector. The organization provides various research-related offerings. Serc.res.in was listed as a ransomware victim associated with thegentlemen |
||||||
| Ransomware | CSIR Structural Engineering Research Centre id30343 View details | India | Research | — | — | |
|
***.res.in zoominfo.com/c/csir-structural-engineering-research-centre/372543677 CSIR-Structural Engineering Research Centre (CSIR-SERC), a premier national laboratory established in 1965 and located in Chennai, India.Operating under the Council of Scientific and Industrial Research, the institute is dedicated to advanced research in structural engineering, materials science, and structural health monitoring.The center plays a crucial role in developing innovative construction technologies and providing specialized testing services to support India's infrastructure development |
||||||
| Ransomware | Jump Solutions Inc id30344 View details | Philippines | IT | — | — | |
|
Jumpsolutions.ph is an IT company based in the Philippines, providing various IT services. The company operates in the IT sector, offering solutions to clients in the country. Jumpsolutions.ph was listed as a ransomware victim associated with thegentlemen |
||||||