Ransomware Group intelligence
Direwolf
ActiveTrack Direwolf with 141 published victims and 1 known leak locations in a single intelligence view.
Overview
Direwolf is tracked by Breach House as a ransomware group with 141 published victims.
United States is currently the most targeted country in this dataset.
1 known leak locations are currently associated with this group.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (1)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 1 | Onion service | Up checked 15m ago | direwolfcdkv5whaz2spehizdg22jsuf5aeje4asmetpbt6ri4jnd4qd.onion |
Top Activity Sectors (16)
- Manufacturing / Engineering 17
- Finance / Legal / Insurance 13
- Services 11
- Communication / Marketing 10
- Healthcare / Pharma 9
- IT 7
- Not identified 7
- Retail / E-commerce 4
- Construction / Real Estate 4
- Agriculture / Food 3
- Transportation / Travel / Logistics 3
- Energy 1
- Public Sector 1
- Hospitality / Food & Beverage / Tourism 1
- Education 1
- Telecommunications 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Direwolf, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
T1059.001 PowerShell Execution
What they do: direwolf executes PowerShell scripts to stage payloads and manipulate system processes before encryption.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
T1106 Native API Execution
What they do: direwolf leverages native API calls to interact with Windows services and evade detection during lateral movement.
What that means: Adversaries may interact with the native OS application programming interface (API) to execute behaviors.
-
What they do: direwolf adds malicious registry run keys to ensure persistence across reboots on compromised hosts.
What that means: Adversaries may achieve persistence by adding a program to a startup folder or referencing it with a Registry run key.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: direwolf disables antivirus tools and security software using registry modifications and service interference.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1070.004 File Deletion Stealth
What they do: direwolf deletes Volume Shadow Copies and backup folders via vssadmin and command-line tools to prevent recovery.
What that means: Adversaries may delete files left behind by the actions of their intrusion activity.
-
T1018 Remote System Discovery Discovery
What they do: direwolf performs remote system discovery via Nmap scans to map network topology before deploying ransomware.
What that means: Adversaries may attempt to get a listing of other systems by IP address, hostname, or other logical identifier on a network that may be used for Lateral Movement from the current system.
-
T1083 File and Directory Discovery Discovery
What they do: direwolf discovers files and directories using Windows Explorer APIs to identify critical data for encryption.
What that means: Adversaries may enumerate files and directories or may search in specific locations of a host or network share for certain information within a file system.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: direwolf moves laterally through SMB shares to access additional systems within the victim network.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1486 Data Encrypted for Impact Impact
What they do: direwolf encrypts victim files using custom symmetric encryption routines targeting business documents and backups.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: direwolf halts critical system recovery processes and service restarts to maximize operational disruption.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
Ransom Notes (1)
▼The note this group leaves on a compromised machine. Click a filename to read it.
HowToRecoveryFiles.txt
Dear Mr or Ms,
If you are reading this message, it means that:
- your network infrastructure has been compromised
- critical data was leaked
- We decrypted your encrypted files. The anti-leakage system is useless to us. We can provide proof.
- files are encrypted
--------------------------------------------------------------------------
The best and only thing you can do is to contact us
to settle the matter before any losses occurs.
--------------------------------------------------------------------------
We can maintain confidentiality for 3 days for you, during which we will not disclose any information about your intrusion or data leakage.
We can extend the confidentiality period free of charge until we reach an agreement if you contact us within 3 days and communicate effectively with us.
If the confidentiality period expires, we will disclose the relevant information.
We provide complimentary decryption testing services. For specific details, please contact us.
--------------------------------------------------------------------------
We have provided a sample document as proof of our possession of your files and you can download and check it:
- https://gofile.io/d/[snip]
Please be advised that your files are scheduled for public release after 30 working days.
If you want to secure your files, we urge you to reach out to us at your earliest convenience.
--------------------------------------------------------------------------
Contact Details:
- live chat room:
- url:http://direwolf3ddtab5anvhulcelauvoxu2a7l264hqs6vtxtgrqsjfvodid.onion/
- roomID: [snip]
- username: [snip]
- password: [snip]
--------------------------------------------------------------------------
Our official website:
- url:http://direwolfcdkv5whaz2spehizdg22jsuf5aeje4asmetpbt6ri4jnd4qd.onion/
--------------------------------------------------------------------------
How to access .onion website:
1.Download and install TOR Browser https://torproject.org
2.Open it and try to access our onion address
3.Maybe you need to use VPN if it can not open our onion address
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (141)
Search, filter and paginate the victim timeline for Direwolf. Showing 1–100 of 141.
| Type | Target | Discovered | Country | Business Category | Intel Link |
|---|---|---|---|---|---|
| Ransomware | THQ Nordic id32314 View details | Sweden | IT | ||
|
thqnordic.com operates within the IT sector and is situated in Sweden. The entity is cataloged in this threat-intelligence index as a ransomware victim associated with the Direwolf threat actor. This listing reflects the entity's documented relationship to the identified cyber threat within the index's scope. No additional incident specifics, such as data stolen, ransom amounts, or breach confirmation details, are provided to maintain factual neutrality and avoid speculation. The entry serves as a reference point for threat analysts monitoring ransomware activity in the IT sector across European contexts. |
|||||
| Ransomware | THQ Nordic id32314 View details | Sweden | IT | ||
|
Multimedia,Games,Graphics Software |
|||||
| Ransomware | Erdem Hospital id32315 View details | Türkiye | Manufacturing / Engineering | ||
|
erdemhastahanesi.com.tr is a Turkish entity operating within the Manufacturing and Engineering sector, identified within a threat-intelligence index as a ransomware victim. The domain and associated organization represent a target profile relevant to cyber threat analysis in industrial and engineering contexts across Turkey. This listing type documents the entity's association with the Direwolf threat actor, reflecting observed malicious activity patterns in threat intelligence datasets. No specific incident details such as stolen data, ransom amounts, or confirmed breach metrics are included per strict factual constraints. The entry serves catalog and analytical purposes for monitoring threat actor campaigns and victim profiles in critical infrastructure sectors. |
|||||
| Ransomware | Erdem Hospital id32315 View details | Türkiye | Manufacturing / Engineering | ||
|
Hospitals |
|||||
| Ransomware | Hospital Clnico Universidad de Chile id32316 View details | Chile | Healthcare / Pharma | ||
|
redclinica.cl operates within the Healthcare and Medicine sector, serving the Chilean market (country code CL). The entity provides clinical and medical services, aligning with sectors frequently targeted by cyber threats due to sensitive patient data and critical operational dependencies. This listing identifies redclinica.cl as a ransomware victim linked to the Direwolf threat actor group. The classification reflects verified threat-intelligence indexing without disclosing unconfirmed incident details such as data stolen, ransom demands, or specific breach metrics. Understanding this association supports cybersecurity awareness for healthcare organizations in Chile and related regions facing similar threat patterns. |
|||||
| Ransomware | Hospital Clnico Universidad de Chile id32316 View details | Chile | Healthcare / Pharma | ||
|
Hospitals |
|||||
| Ransomware | National Kidney Registry id32119 View details | United States | Healthcare / Pharma | ||
|
kidneyregistry.com operates within the United States healthcare and medicine sector, providing registry-related services for patient or medical data management. As cataloged in this threat-intelligence index, the entity is classified as a ransomware victim linked to the Direwolf threat actor. The listing reflects observed security incident associations without disclosing unconfirmed breach details, data exfiltration specifics, or operational impact metrics. This entry supports cyber threat intelligence workflows by documenting victim profiles tied to active threat actors within critical infrastructure sectors. Neutral documentation ensures transparency for defenders assessing healthcare ecosystem risks. |
|||||
| Ransomware | National Kidney Registry id32119 View details | United States | Healthcare / Pharma | ||
|
[AI generated] The National Kidney Registry is a nonprofit organization based in the United States that facilitates kidney paired donation programs. It operates within the healthcare and organ transplantation industry, connecting kidney donors and recipients across a national network of transplant centers. Its mission is to improve transplant outcomes, increase the number of living donor transplants, and reduce patient waiting times for compatible kidneys. |
|||||
| Ransomware | Studio Legale ESE id32120 View details | Italy | Finance / Legal / Insurance | ||
|
studiolegaleese.it is an entity identified within a threat-intelligence index as a ransomware victim operating in the IT sector, with primary relevance to Finance, Legal, and Insurance domains. The domain reflects a specialized service context associated with legal and financial operations, where cyber incidents can carry significant operational and regulatory impact. This listing type documents the entity's association with the threat actor Direwolf, providing catalog context for threat researchers and security analysts monitoring financially sensitive organizations. The description remains factual and neutral, focusing on sector alignment, geographic context within IT, and the verified ransomware victim classification without speculating on breach details. This entry supports comprehensive threat-intelligence analysis for entities in high-value sectors. |
|||||
| Ransomware | Studio Legale ESE id32120 View details | Italy | Finance / Legal / Insurance | ||
|
Law Firms , Legal Services |
|||||
| Ransomware | NorthStar id31929 View details | Canada | — | ||
|
Enterprise Resource Planning |
|||||
| Ransomware | Aztec Software id31930 View details | Mexico | — | ||
|
Engineering Software |
|||||
| Ransomware | The Revel Collective id31931 View details | United States | — | ||
|
Hospitality |
|||||
| Ransomware | ProSim Aviation Research id31932 View details | France | — | ||
|
Engineering Software |
|||||
| Ransomware | ProSim Aviation Research id31932 View details | Netherlands | — | ||
|
Engineering Software |
|||||
| Ransomware | Authenticate Information Systems id31933 View details | United States | — | ||
|
[AI generated] N/A |
|||||
| Ransomware | Diaco Global id31934 View details | — | |||
|
Jewelry & Watch Retail |
|||||
| Ransomware | iSON XPERIENCES id31935 View details | Mexico | — | ||
|
Business Services |
|||||
| Ransomware | Deer Creek-Mackinaw CUSD id31936 View details | United States | — | ||
|
Education |
|||||
| Ransomware | Allstar Industries id31937 View details | United States | — | ||
|
Business Services |
|||||
| Ransomware | HP Carriers id31938 View details | United States | — | ||
|
[AI generated] N/A |
|||||
| Ransomware | MCT Group of Companies id31939 View details | United Arab Emirates | — | ||
|
Building Materials |
|||||
| Ransomware | Reviso Cloud Accounting Limited id31940 View details | Denmark | — | ||
|
[AI generated] Reviso Cloud Accounting Limited is a software company that provides cloud-based accounting solutions primarily targeting small and medium-sized businesses. The platform offers tools for bookkeeping, invoicing, financial reporting, and VAT management. The company operates within the financial technology and accounting software industry and is based in the United Kingdom, serving businesses seeking accessible and scalable online accounting services. |
|||||
| Ransomware | Studee id31941 View details | — | |||
|
[AI generated] Studee is an online platform that helps international students find and apply to universities around the world. Operating in the education technology industry, the company is based in the United Kingdom. It connects prospective students with hundreds of universities globally, offering guidance on courses, applications, and admissions processes, making higher education more accessible to students seeking to study abroad. |
|||||
| Ransomware | Photon Health, Inc. id31917 View details | United States | — | ||
|
Healthcare |
|||||
| Ransomware | InfoFlo CRM id31918 View details | United States | — | ||
|
software provider |
|||||
| Ransomware | PayUp id31919 View details | — | |||
|
Financial Software |
|||||
| Ransomware | Lifesum id31920 View details | Sweden | — | ||
|
Hospitals & Physicians Clinics |
|||||
| Ransomware | Arizona State University (ASU) id31789 View details | United States | — | ||
|
Colleges,Universities |
|||||
| Ransomware | Wishfully Studios id31790 View details | Sweden | — | ||
|
Games |
|||||
| Ransomware | Mighty Kingdom id31792 View details | Australia | — | ||
|
Multimedia, Games |
|||||
| Ransomware | Eva AI Limited id31793 View details | United Kingdom | — | ||
|
Human Resources |
|||||
| Ransomware | DodoPayments id31731 View details | United Kingdom | Finance / Legal / Insurance | ||
|
dodopayments.com is a financial services company based in the United Kingdom, operating in the finance, legal, and insurance sector. The company provides payment solutions and services to its clients. dodopayments.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | DodoPayments id31741 View details | India | Finance / Legal / Insurance | ||
|
Financial Software |
|||||
| Ransomware | AAM:HOA Management id31732 View details | United States | Finance / Legal / Insurance | ||
|
Associated Asset is a financial services company based in the US, operating in the finance, legal, and insurance sector. The company provides various financial solutions to its clients. Associated Asset was listed as a ransomware victim associated with direwolf. |
|||||
| Ransomware | AAM:HOA Management id31742 View details | United States | Finance / Legal / Insurance | ||
|
HOA Management |
|||||
| Ransomware | TOTVS id31733 View details | Brazil | — | ||
|
Business Services |
|||||
| Ransomware | TOTVS id31743 View details | Brazil | — | ||
|
Business Services |
|||||
| Ransomware | Colla Health id31734 View details | United States | — | ||
|
Healthcare |
|||||
| Ransomware | Colla Health id31744 View details | United States | — | ||
|
Healthcare |
|||||
| Ransomware | PayrHealth id31735 View details | United States | — | ||
|
Healthcare |
|||||
| Ransomware | PayrHealth id31745 View details | United States | — | ||
|
Healthcare |
|||||
| Ransomware | DXS International id31736 View details | United Kingdom | — | ||
|
Healthcare |
|||||
| Ransomware | DXS International id31746 View details | United Kingdom | — | ||
|
Healthcare |
|||||
| Ransomware | Leafwell id31553 View details | United States | Healthcare / Pharma | ||
|
Leafwell.com is a US-based healthcare company operating in the pharmaceutical sector, providing various services and offerings to its customers. As a part of the healthcare industry, Leafwell.com plays a crucial role in delivering medical solutions. Leafwell.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Leafwell id31553 View details | United States | Healthcare / Pharma | ||
|
Hospitals & Physicians Clinics |
|||||
| Ransomware | BigSpark id31549 View details | Anguilla | IT | ||
|
Bigspark.ai is an artificial intelligence company operating in the IT sector, located in AI. The company likely provides AI-related services and solutions. Bigspark.ai was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | BigSpark id31549 View details | Anguilla | IT | ||
|
Business Services |
|||||
| Ransomware | Chat Jurídico id31547 View details | Brazil | Finance / Legal / Insurance | ||
|
Chatjuridico.com.br is a Brazilian online platform that offers legal and financial services. Based in Brazil, the company operates in the finance, legal, and insurance sector, providing various services to its clients. Chatjuridico.com.br is listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Chat Jurídico id31547 View details | Brazil | Finance / Legal / Insurance | ||
|
Law Firms & Legal Services |
|||||
| Ransomware | Merge id31548 View details | United States | Finance / Legal / Insurance | ||
|
Merge.money operates in the finance sector, providing services in the United States. As a financial entity, it likely offers various financial and insurance-related services to its clients. Merge.money was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Merge id31548 View details | United States | Finance / Legal / Insurance | ||
|
Financial |
|||||
| Ransomware | Swyft Inc. id31544 View details | United States | Retail / E-commerce | ||
|
Swyft.com is an e-commerce platform based in the United States, operating in the retail sector. The company provides various offerings to its customers, facilitating online transactions and shopping experiences. Swyft.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Swyft Inc. id31544 View details | United States | Retail / E-commerce | ||
|
Retail Technology & SaaS |
|||||
| Ransomware | AliveCor, Inc. id31536 View details | United States | Healthcare / Pharma | ||
|
Alivecor.com is a US-based company operating in the healthcare and medicine sector, offering innovative solutions for cardiac monitoring and analysis. The company is known for its portable and user-friendly devices that enable individuals to track their heart health. Alivecor.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | AliveCor, Inc. id31536 View details | United States | Healthcare / Pharma | ||
|
medical device and artificial intelligence |
|||||
| Ransomware | Statista GmbH id31537 View details | Germany | IT | ||
|
Statista.com is a leading statistics and market research company based in Germany, providing access to data and insights on various industries and topics. The company offers a wide range of statistical data, market research reports, and business intelligence tools to its clients. Statista.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Statista GmbH id31537 View details | Germany | IT | ||
|
Data Collection & Internet Portals |
|||||
| Ransomware | Quironsalud id31538 View details | Spain | Healthcare / Pharma | ||
|
Quironsalud.com is a healthcare provider based in Spain, offering medical services to patients. The company operates in the healthcare sector, providing various medical specialties and treatments. Quironsalud.com was listed as a ransomware victim associated with direwolf |
|||||
| Ransomware | Quironsalud id31538 View details | Spain | Healthcare / Pharma | ||
|
Hospitals & Physicians Clinics |
|||||
| Ransomware | Health Carousel id31539 View details | Philippines | Healthcare / Pharma | ||
|
Healthcarousel.com is a Philippines-based company operating in the healthcare and pharmaceutical sector, providing various health-related services and offerings. The company is involved in the healthcare industry, catering to the needs of patients and healthcare providers in the Philippines. Healthcarousel.com was listed as a ransomware victim associated with direwolf. |
|||||
| Ransomware | Health Carousel id31539 View details | Philippines | Healthcare / Pharma | ||
|
Business Services · Ohio |
|||||
| Ransomware | Fondo id31540 View details | Finance / Legal / Insurance | |||
|
Fondo.com operates in the finance and insurance sector, providing various financial services. The company is based in the United States and offers a range of insurance and financial products. Fondo.com was listed as a ransomware victim associated with direwolf. |
|||||
| Ransomware | Fondo id31540 View details | Finance / Legal / Insurance | |||
|
Financial Software |
|||||
| Ransomware | Osmo Wallet id31541 View details | United States | Finance / Legal / Insurance | ||
|
Osmomoney.com operates in the finance sector in the United States, providing financial services. The company is part of the broader financial, legal, and insurance sector, offering various financial solutions. Osmomoney.com was listed as a ransomware victim associated with direwolf. |
|||||
| Ransomware | Osmo Wallet id31541 View details | United States | Finance / Legal / Insurance | ||
|
FinTech |
|||||
| Ransomware | Jewelex id29811 View details | Cyprus | Retail / E-commerce | ||
|
Manufacturing |
|||||
| Ransomware | Clínica Vida id29812 View details | Brazil | Healthcare / Pharma | ||
|
Healthcare Services |
|||||
| Ransomware | Did Asia id29813 View details | Thailand | Manufacturing / Engineering | ||
|
Automotive Parts |
|||||
| Ransomware | Nueva Pescanova Group id29814 View details | Spain | Agriculture / Food | ||
|
Food & Beverage |
|||||
| Ransomware | Tepco-Group id25483 View details | Japan | Services | ||
|
Electronics |
|||||
| Ransomware | Perdana Petroleum Berhad id25482 View details | Malaysia | Energy | ||
|
Energy, Utilities & Waste |
|||||
| Ransomware | Chemsain Konsultant Sdn Bhd id25481 View details | Malaysia | Manufacturing / Engineering | ||
|
Architecture, Engineering & Design |
|||||
| Ransomware | Bauerfeind id25399 View details | Germany | Manufacturing / Engineering | ||
|
Manufacturing |
|||||
| Ransomware | Mohammad Omar Bin Haider Holding Group id25398 View details | United Arab Emirates | Services | ||
|
Business Services |
|||||
| Ransomware | Hydrodiseño id25280 View details | Spain | Manufacturing / Engineering | ||
|
Manufacturing |
|||||
| Ransomware | Bina Darulaman Berhad id25279 View details | Malaysia | Manufacturing / Engineering | ||
|
Civil Engineering Construction |
|||||
| Ransomware | PernelMedia id25278 View details | France | Communication / Marketing | ||
|
Media |
|||||
| Ransomware | KwikLedgers id25277 View details | United States | Finance / Legal / Insurance | ||
|
Finance |
|||||
| Ransomware | Laurenzano Logistics id25276 View details | United States | Transportation / Travel / Logistics | ||
|
Logistics Services |
|||||
| Ransomware | Sunzen Biotech Berhad id25275 View details | Malaysia | IT | ||
|
Manufacturing |
|||||
| Ransomware | Varimed Medikal id25274 View details | Türkiye | Manufacturing / Engineering | ||
|
Manufacturing |
|||||
| Ransomware | Polaris Parks id24996 View details | United States | Construction / Real Estate | ||
|
Real Estate |
|||||
| Ransomware | Ranger Investigation Guard id24995 View details | Thailand | Services | ||
|
Business Services |
|||||
| Ransomware | Office of Public Sector Anti-Corruption Commission id24994 View details | Thailand | Public Sector | ||
|
Government |
|||||
| Ransomware | Guan Chong Berhad id24993 View details | Malaysia | Hospitality / Food & Beverage / Tourism | ||
|
Food & Beverage |
|||||
| Ransomware | Sanyang Motor id24992 View details | Taiwan, Province of China | Manufacturing / Engineering | ||
|
Manufacturing |
|||||
| Ransomware | Adnan Sundra & Low id24991 View details | Malaysia | Finance / Legal / Insurance | ||
|
Law Firms, Legal Services |
|||||
| Ransomware | K.M. Packaging id24249 View details | Thailand | Manufacturing / Engineering | ||
|
Manufacturing |
|||||
| Ransomware | MITACHI id24248 View details | Japan | Other | ||
|
Trade |
|||||
| Ransomware | Kingsford Group id24247 View details | Singapore | Construction / Real Estate | ||
|
[AI generated] Kingsford Group is a company that specializes in property development and investment. It operates globally, with notable activities in the Asia Pacific region. The firm is known for its expertise in identifying lucrative opportunities in the residential, commercial, and hospitality sectors. Its services include project management, marketing and sales, as well as construction management. |
|||||
| Ransomware | Transpedrosa id24246 View details | Brazil | Transportation / Travel / Logistics | ||
|
[AI generated] Transpedrosa is a Brazilian company that specializes in the transportation of liquid and gas products. Established in 1969, they handle an array of materials like chemical, petrochemical, and aviation products. They continue to expand their services beyond their initial local focus, becoming a crucial player in the road transport logistic sector within Brazil. |
|||||
| Ransomware | Clemar Assessoria e Logística em Comércio Internacional id24245 View details | Brazil | Services | ||
|
[AI generated] Clemar Assessoria e Logística em Comércio Internacional is a Brazilian company specializing in international trade and logistic services. With extensive experience in the sector, it provides assistance in customs clearance, export and import processes, freight forwarding, and international business consultancy. The company aims to facilitate and simplify foreign trade operations for businesses of all sizes. |
|||||
| Ransomware | Meinhardt Malaysia id24244 View details | Malaysia | Manufacturing / Engineering | ||
|
[AI generated] Meinhardt Malaysia is an engineering consultancy firm that offers a diverse range of professional engineering and project management services. The company was established in 1973 and it's a subsidiary of the Meinhardt Group. Their service spans across multiple industries including Building Engineering, Transportation, Water & Environment, and Urban Development. They have numerous landmark projects in their portfolio including the planning and design of technologically advanced buildings. |
|||||
| Ransomware | Electricidad Panamericana id24243 View details | Argentina | Other | ||
|
[AI generated] N/A |
|||||
| Ransomware | Coral id23849 View details | United Kingdom | Retail / E-commerce | ||
|
[AI generated] Coral is a renowned UK-based betting and gaming company offering a wide range of services including sports betting, casino games, bingo, poker, and more. The company operates both online and via an extensive network of betting shops. Coral is part of the Entain Group, one of the largest sports betting and gaming groups in the world. |
|||||
| Ransomware | Hyundai Nishat Motor id23848 View details | Pakistan | Communication / Marketing | ||
|
[AI generated] Hyundai Nishat Motor Private Limited is a joint venture between three major international corporations: Nishat Group, Sojitz Corporation, and Hyundai Motors. Established in Pakistan, the company focusses on automobile manufacturing, aiming to meet local demand for Hyundai vehicles. Automation and advanced robotics are incorporated in their high-tech plant for an efficient production process. The company produces various Hyundai models, including SUVs, sedans, and trucks. |
|||||
| Ransomware | YPC MALAYSIA id23847 View details | Malaysia | Other | ||
|
[AI generated] N/A |
|||||
| Ransomware | Speed Inter Transport id23025 View details | Thailand | Transportation / Travel / Logistics | ||
|
[AI generated] Speed Inter Transport is a logistics and transportation company that provides high-quality freight transportation services internationally. They specialize in transporting and delivering goods securely and efficiently. The services range from air and sea freight to road services. Their aim is to provide clients with a comprehensive and reliable freight forwarding solution. The company demonstrates a strong commitment to sustainable practices in its operations. |
|||||
| Ransomware | Miguel Veiga, Neiva Santos e Associados. id23024 View details | Portugal | Other | ||
|
[AI generated] N/A |
|||||