Ransomware Group intelligence
Thegentlemen
ActiveTrack Thegentlemen with 1040 published victims and 2 known leak locations in a single intelligence view.
Overview
Thegentlemen is tracked by Breach House as a ransomware group with 1040 published victims.
United States is currently the most targeted country in this dataset.
2 known leak locations are currently associated with this group.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (2)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 2 | Onion service | Down checked 14m ago | i2ohjeeqe37jre4f2u7pyq73cbm6lecumdxapkvrlryna6rc3it4zsid.onion |
| Leak location 1 | Onion service | Down checked 14m ago | tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion |
Top Activity Sectors (20)
- IT 110
- Manufacturing / Engineering 103
- Communication / Marketing 88
- Healthcare / Pharma 66
- Finance / Legal / Insurance 50
- Retail / E-commerce 49
- Construction / Real Estate 48
- Services 38
- Transportation / Travel / Logistics 27
- Not identified 27
- Agriculture / Food 23
- Education 21
- Public Sector 20
- Energy 18
- NGOs / Associations 12
- Hospitality / Food & Beverage / Tourism 12
- Telecommunications 6
- Media / Entertainment 1
- Law Enforcement / Public Sector 1
- Research 1
Typical Attacks (10)
▼MITRE ATT&CK does not currently catalogue Thegentlemen, so this is our assessment of the techniques it uses, drawn from public reporting. The techniques themselves, and every "what that means" definition below, come from MITRE ATT&CK v19.2. Confidence: medium. Treat it as orientation, not attribution.
-
T1059.001 PowerShell Execution
What they do: thegentlemen executes PowerShell scripts to run payload logic, disable defenses, and propagate across systems.
What that means: Adversaries may abuse PowerShell commands and scripts for execution.
-
What they do: thegentlemen modifies registry run keys and startup locations to maintain persistence after reboots.
What that means: Adversaries may interact with the Windows Registry as part of a variety of other techniques to aid in defense evasion, persistence, and execution.
-
T1685 Disable or Modify Tools Defense Impairment
What they do: thegentlemen disables or modifies security tools such as EDR and AV processes to hinder incident response.
What that means: Adversaries may disable, degrade, or tamper with security tools or applications (e.g., endpoint detection and response (EDR) tools, intrusion detection systems (IDS), antivirus, logging agents, sensors, etc.) to impair or reduce visibility of defensive capabilities.
-
T1070.004 File Deletion Stealth
What they do: thegentlemen deletes Volume Shadow Copies and backup artifacts via system commands to prevent recovery.
What that means: Adversaries may delete files left behind by the actions of their intrusion activity.
-
T1003.001 LSASS Memory Credential Access
What they do: thegentlemen accesses LSASS memory to steal credentials for lateral movement and privilege escalation.
What that means: Adversaries may attempt to access credential material stored in the process memory of the Local Security Authority Subsystem Service (LSASS).
-
T1135 Network Share Discovery Discovery
What they do: thegentlemen uses network share discovery to locate victim file shares and map accessible storage paths for encryption.
What that means: Adversaries may look for folders and drives shared on remote systems as a means of identifying sources of information to gather as a precursor for Collection and to identify potential systems of interest for Lateral Movement.
-
T1021.002 SMB/Windows Admin Shares Lateral Movement
What they do: thegentlemen uses SMB/Windows Admin Shares for lateral movement between networked hosts in manufacturing and IT environments.
What that means: Adversaries may use Valid Accounts to interact with a remote network share using Server Message Block (SMB).
-
T1486 Data Encrypted for Impact Impact
What they do: thegentlemen encrypts victim files and data stores using ransomware payloads to maximize impact and extortion pressure.
What that means: Adversaries may encrypt data on target systems or on large numbers of systems in a network to interrupt availability to system and network resources.
-
T1490 Inhibit System Recovery Impact
What they do: thegentlemen calls system recovery inhibitors to block restore processes and harden ransomware impact.
What that means: Adversaries may delete or remove built-in data and turn off services designed to aid in the recovery of a corrupted system to prevent recovery.
-
T1491.001 Internal Defacement Impact
What they do: thegentlemen performs internal defacement by replacing victim files with ransom notes and altered content.
What that means: An adversary may deface systems internal to an organization in an attempt to intimidate or mislead users, thus discrediting the integrity of the systems.
Tools Observed (40)
▼Software Thegentlemen has been seen using, grouped by what it is used for. Legitimate administration tools appear here because these actors routinely abuse them — presence in this list is not itself malicious.
Credential theft
Defense evasion
Discovery & enumeration
Exfiltration
LOLBAS (living-off-the-land binaries)
Networking & tunnelling
Offensive security tooling
Remote monitoring & management
Tool data from Ransomware Tool Matrix by BushidoUK, licensed CC BY 4.0. Grouped by purpose and matched to this group by Breach House.
Ransom Notes (3)
▼The note this group leaves on a compromised machine. Click a filename to read it.
README-GENTLEMEN_3.txt
[snip] = YOUR ID Gentlemen, your network has been encrypted. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. In addition, it will be reported to the relevant data protection authorities and regulators. This may result in official investigations, significant fines, and reputational damage for your company. 6. We guarantee 100% file recovery to their original state, bit by bit. To demonstrate the quality of our work, you can provide three sample files, and we will restore them free of charge. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): 13343E50C1B3466F0EA35B5B3E55A044CB7132FD28A8665EFEA0E5848E276D548C21B79F15C2 Download Tox messenger: https://tox.chat/download.html Contact us (add via SimpleX): https://smp14.simplex.im/a#4mlOiePV8NBXOv2QrZ9CaPeRPm1mBUgxn4SdpFnm978 Download SimpleX https://simplex.chat/downloads/ СONTACT TO PREVENT DATA LEAK (7 DAYS BEFORE YOUR COMPANY DATA WILL BE PUBLISHED IN OUR BLOG, WITH 239 HOURS REVEAL TIMER) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Follow us on X: https://x.com/TheGentlemen26 Clearnet blog link: https://thegentlemen.cc/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website. After adding (us) in Tox or Session, please wait for your request to be processed and stay online. If you do not receive a reply within 36 hours, create another account and contact us again. In your first message in chat, immediately provide your ID from the note and the name of your organization. Assign one person as contact responsible for all negotiations. Do not create multiple chats. We have stolen more than 100 GB of your corporate information from your servers, including critically important data. Your company is facing a massive information security breach. A total data leak has occurred. This greatly increases the risk of colossal financial and reputational losses.
README-GENTLEMEN_2.txt
[snip] = YOUR ID Gentlemen, your network has been encrypted. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. In addition, it will be reported to the relevant data protection authorities and regulators. This may result in official investigations, significant fines, and reputational damage for your company. 6. We guarantee 100% file recovery to their original state, bit by bit. To demonstrate the quality of our work, you can provide three sample files, and we will restore them free of charge. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): 98C132E2B20B531BE6604397D97040C1E9EB42FCE12EDF119BCE8B4031CA5C70DAF5E65FA3C3 Download Tox messenger: https://tox.chat/download.html Contact us (add via Session ID): 05809b2da1d5b1a302f48b5767fd1843d54f3c516f9ab0eb26b544ffa73340292e Download Session https://getsession.org СONTACT TO PREVENT DATA LEAK (7 DAYS BEFORE YOUR COMPANY DATA WILL BE PUBLISHED IN OUR BLOG, WITH 239 HOURS REVEAL TIMER) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Follow us on X: https://x.com/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website. After adding (us) in Tox or Session, please wait for your request to be processed and stay online. If you do not receive a reply within 36 hours, create another account and contact us again. In your first message in chat, immediately provide your ID from the note and the name of your organization. Assign one person as contact responsible for all negotiations. Do not create multiple chats.
README-GENTLEMEN.txt
[snip] = YOUR ID Gentlemen, your network is under our full control. All your files are now encrypted and inaccessible. 1. Any modification of encrypted files will make recovery impossible. 2. Only our unique decryption key and software can restore your files. Brute-force, RAM dumps, third-party recovery tools are useless. It’s a fundamental mathematical reality. Only we can decrypt your data. 3. Law enforcement, authorities, and “data recovery” companies will NOT help you. They will only waste your time, take your money, and block you from recovering your files — your business will be lost. 4. Any attempt to restore systems, or refusal to negotiate, may lead to irreversible wipe of all data and your network. 5. We have exfiltrated all your confidential and business data (including NAS, clouds, etc). If you do not contact us, it will be published on our leak site and distributed to major hack forums and social networks. TOX CONTACT - RECOVER YOUR FILES Contact us (add via TOX ID): F8E24C7F5B12CD69C44C73F438F65E9BF560ADF35EBBDF92CF9A9B84079F8F04060FF98D098E Download Tox messenger: https://tox.chat/download.html COOPERATE TO PREVENT DATA LEAK (239 HOURS LEFT) Check our blog: http://tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion/ Download Tor browser: https://www.torproject.org/download/ Any other means of communication are fake and may be set up by third parties. Only use the methods listed in this note or on the specified website.
Ransom-note text from RansomLook, licensed CC BY 4.0.
Victims (1040)
Search, filter and paginate the victim timeline for Thegentlemen. Showing 301–400 of 1040.
| Type | Target | Discovered | Country | Business Category | Intel Link |
|---|---|---|---|---|---|
| Ransomware | Velum id30801 View details | IT | — | ||
|
Velum.biz operates in the IT sector, providing various services. The company's specific offerings and location are not publicly disclosed. Velum.biz was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Velum id30801 View details | IT | — | ||
|
***.biz zoominfo.com/c/velum-inc/372599932 We are making some files publicly available. We have hundreds of gigabytes of your files, including database projects, client contracts, personal data, and documents. If you do not want to face the consequences of a data breach, please contact us; otherwise, everything will be published. VELUM is a French manufacturer of professional lighting solutions based in Bischoffsheim, Alsace, operating since 1975. The company specializes in designing, developing, and manufacturing custom LED lighting fixtures for both indoor and outdoor environments. As a family-owned business, VELUM provides comprehensive support, including lighting studies, technical advice, and tailored solutions for professionals across various sectors |
|||||
| Ransomware | Ceska filharmonie id30802 View details | Czechia | Services | — | |
|
Ceskafilharmonie.cz is a Czech-based entity operating in the services sector, likely providing various offerings to its clients. The services sector encompasses a broad range of industries, including financial, professional, and personal services. Ceskafilharmonie.cz was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Ceska filharmonie id30802 View details | Czechia | Services | — | |
|
***.cz zoominfo.com/c/esk-filharmonie/1100523885 The Czech Philharmonic (Česká filharmonie) is one of the world's most renowned symphony orchestras, based in Prague, Czech Republic. It gave its first independent concert on January 4, 1896, under the baton of Antonín Dvořák, and has been resident at the historic Rudolfinum concert hall for over a century. The orchestra is globally celebrated for its authentic and masterful interpretations of Czech composers such as Dvořák, Smetana, and Janáček. Currently, the ensemble is led by Chief Conductor and Music Director Semyon Bychkov, continuing its legacy of artistic excellence and international touring. |
|||||
| Ransomware | Herbahaz id30803 View details | Hungary | Agriculture / Food | — | |
|
Herbahaz.hu is a Hungarian entity operating in the agriculture and food sector. The company is based in Hungary and likely provides products or services related to this industry. Herbahaz.hu was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Herbahaz id30803 View details | Hungary | Agriculture / Food | — | |
|
***.hu zoominfo.com/c/bennovum-kft/535573660 Herbaház is a Hungarian health and wellness specialty retail chain operating multiple stores nationwide alongside an online shop. The company specializes in dietary supplements, medicinal herbs, vitamins, and a wide range of organic, vegan, and "free-from" health foods. Their mission is to promote conscious, healthy living by providing a comprehensive, one-stop destination for natural health products and wellness solutions. |
|||||
| Ransomware | vpcgroup.com customfoam.com id30804 View details | United States | Manufacturing / Engineering | — | |
|
Customfoam.com is a US-based company operating in the manufacturing and engineering sector, providing custom foam solutions. The company's offerings cater to various industries, leveraging its expertise in foam technology. Customfoam.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | vpcgroup.com customfoam.com id30804 View details | United States | Manufacturing / Engineering | — | |
|
***.com vpcgroup.com zoominfo.com/c/custom-foam-systems-ltd/31526090 Custom Foam Systems (CFS) is a leading Canadian manufacturer of fabricated and molded custom polyurethane foam components, founded in 1973 and based in Kitchener, Ontario. The company specializes in serving the automotive, healthcare, and furniture industries across North America with over 45 years of manufacturing excellence. CFS operates under ISO 9001:2015 and FDA standards, utilizing advanced product development processes and lean manufacturing systems to deliver exceptional quality and on-time performance. As a family-owned business, they have built a strong reputation for innovation, reliability, and their commitment that "every component matters." |
|||||
| Ransomware | Optiforms id30805 View details | United States | IT | — | |
|
Optiforms.com is an IT company based in the United States, providing various services within the IT sector. As an IT company, optiforms.com likely offers solutions and support to its clients. Optiforms.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Optiforms id30805 View details | United States | IT | — | |
|
***.com zoominfo.com/c/optiforms-inc/67340558 Optiforms, Inc. is a precision manufacturing company based in Temecula, California, specializing in electroforming, CNC machining, and enhanced surface finishes. Founded in 1984, the company produces custom metal components and high-performance optical coatings for demanding applications. They primarily serve the aerospace, defense, medical, semiconductor, and specialty lighting sectors with advanced, vertically integrated manufacturing solutions. |
|||||
| Ransomware | MatTek id30806 View details | United States | IT | — | |
|
Mattek.com is an IT company based in the United States, providing various IT services. The company operates in the IT sector, offering services to clients in the US. Mattek.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | MatTek id30806 View details | United States | IT | — | |
|
***.com zoominfo.com/c/mattek-corp/109184324 MatTek Corporation is a pioneering biotechnology company founded in 1985 and headquartered in Ashland, Massachusetts, specializing in the development of innovative in vitro 3D reconstructed human tissue models. They produce advanced microtissues and cell culture products that are widely used by researchers to accelerate drug development, conduct toxicity testing, and replace traditional animal testing. Originally an independent leader in tissue engineering, the company was recently acquired by the global life science supplier Sartorius and now operates as a key part of their advanced biological models portfolio |
|||||
| Ransomware | Conecsus id30807 View details | United States | IT | — | |
|
ConecSus LLC is an IT company based in the United States, providing various IT services. The company operates within the IT sector, offering solutions to its clients. ConecSus LLC was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Conecsus id30807 View details | United States | IT | — | |
|
***.com zoominfo.com/c/conecsus-llc/358895914 Conecsus LLC is a global "green" metals recycler and refiner founded in 1980 and headquartered in Terrell, Texas. The company specializes in processing complex industrial residues and electronic wastes, particularly those containing tin, lead, silver, gold, and copper, such as SMT solder and solder paste wastes. Recognized as the largest secondary tin-lead recycler in the Western Hemisphere, Conecsus converts these materials into reusable metal products using state-of-the-art technology. |
|||||
| Ransomware | Wunschkind Klinik Dr Brunbauer id30808 View details | Austria | Healthcare / Pharma | — | |
|
Wunschkind.at is an Austrian entity operating in the healthcare and medicine sector, providing services in Austria. The company's offerings are focused on healthcare. Wunschkind.at was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Wunschkind Klinik Dr Brunbauer id30808 View details | Austria | Healthcare / Pharma | — | |
|
***.at zoominfo.com/c/wunschkind-klinik-dr-brunbauer/1320140781 We have hundreds of gigabytes of your files, including database projects, client contracts, personal data and documents, medical data, medical histories, treatment records, medical reports, and more—all of which constitute critically important information. If you do not want to face the consequences of a data breach, please contact us; otherwise, everything will be published. fertility clinic in Vienna, Austria, led by Dr. Brunbauer. Located in the city center, the clinic specializes in fertility treatments including IVF, insemination, diagnostics, hormone therapy, egg donation, and cryopreservation. It is a recognized partner clinic of Austria's IVF-Fonds program. |
|||||
| Ransomware | Sirl id30764 View details | Portugal | IT | — | |
|
sirl.pt is a Portuguese IT company providing various services. Located in Portugal, the company operates within the IT sector, offering a range of solutions. sirl.pt was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Sirl id30764 View details | Portugal | IT | — | |
|
***.pt zoominfo.com/c/sirl/372746430 Portuguese manufacturing company founded in 1988 and headquartered in Penela, Coimbra. It specializes in producing and selling machinery and tools for the civil construction industry.Their flagship products are concrete mixers, complemented by various other construction equipment and welding tools. The company employs 51–200 people and is a recognized supplier in the European construction machinery sector |
|||||
| Ransomware | Disney Family id30765 View details | United States | Finance / Legal / Insurance | — | |
|
Shamrock.com operates in the finance, legal, and insurance sector in the United States, providing various services to its clients. As a financial services provider, shamrock.com likely handles sensitive client information. Shamrock.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Disney Family id30765 View details | United States | Finance / Legal / Insurance | — | |
|
This critical data breach involves Disney Family / Shamrock Holdings, the private investment firm and family office established by Roy E. Disney to manage the wealth of the Disney family branch, rather than the public Walt Disney Company. The compromised dataset, totaling over 800 GB and spanning from the 1980s to June 2026, exposes highly sensitive information across 14 critical categories, including family trusts, tax administration, and private equity fund management. Key victims include prominent figures such as Abigail Disney, Roy P. Disney, and Stanley Gold, whose personal financial records, passports, and KYC documents were leaked alongside detailed trust instruments for the "Disney Grandchildren Trusts." The breach reveals active operational data, including recent payroll records, bank reconciliations with CNB, and subscription agreements for funds like the Shamrock Israel Growth Fund. With unencrypted databases, embedded ERP credentials etc.. |
|||||
| Ransomware | Ecopetrol id30672 View details | Colombia | Energy | — | |
|
Ecopetrol is the largest company in Colombia and a main player in the country's energy sector, primarily involved in the exploration, production, and refining of petroleum products. As a major energy company, Ecopetrol provides a range of services and offerings related to the energy industry. Ecopetrol was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Ecopetrol id30672 View details | Colombia | Energy | — | |
|
$33.1 Billion. www.***.com.co ECOPETROL copetrol SA is a company organized as a public limited company, of national order, linked to the Ministry of Mines and Energy. It has operations located in the center, south, east and north of Colombia, as well as abroad. It has two refineries in Barrancabermeja and Cartagena. Through its subsidiary Cenit, specialized in hydrocarbon transportation and logistics, it owns three ports for the export and import of fuels and crude oil in Coveñas (Sucre) and Cartagena (Bolvar) with access to the Atlantic, and Tumaco (Nariño) on the Pacific. Cenit also owns most of the country's oil and multi-purpose pipelines that connect production systems with large consumption centers and maritime terminals. Ecopetrol also has a stake in the biofuels business and is present in Brazil, Mexico and the United States (Gulf of Mexico and Permian Texas). 1TB+ Stock Symbol = ECOPETROL |
|||||
| Ransomware | Military Sealift Command id30646 View details | United States | Transportation / Travel / Logistics | — | |
|
Sealiftcommand.com is a US-based company operating in the transportation and logistics sector, providing services to support the movement of goods and supplies. The company's offerings cater to the needs of various industries, including travel and logistics. Sealiftcommand.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Military Sealift Command id30646 View details | United States | Transportation / Travel / Logistics | — | |
|
***.com zoominfo.com/c/military-sealift-command/149045906 We attempted to contact the managers regarding the leaked documents (ITAR documentation, personal data, cargo manifests—including ESSM shipments—vessel blueprints, and both disclosed and undisclosed information)/ We managed to reach only Jennifer Miller , Todd Phillips and Dain Costlow However, these individuals dismissed the entire matter as a joke, ignoring all warnings about leaks and the importance of internal documents, and refused to provide any contact details for anyone authorized to handle such issues or to pass the information on to management, despite the availability of conclusive evidence. If you do not get in touch in the near future, the data will be published. |
|||||
| Ransomware | Advantage Home Health Care id30647 View details | United States | Healthcare / Pharma | — | |
|
AdvantageHHc is a healthcare company based in the US, operating in the medicine sector. The company provides various healthcare services. AdvantageHHc was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Advantage Home Health Care id30647 View details | United States | Healthcare / Pharma | — | |
|
***.com zoominfo.com/c/advantage-home-health-care-inc/357944466 Advantage Home Health Care, a leading Indiana-owned provider of in-home care services with over 30 years of experience.The company operates multiple locations across Indiana, serving dozens of counties with post-procedure recovery and long-term home assistance. |
|||||
| Ransomware | Sunway Scientific id30648 View details | Taiwan, Province of China | Manufacturing / Engineering | — | |
|
Sun-way.com.tw is a company based in Taiwan, operating in the manufacturing and engineering sector. The company likely provides various products and services related to its sector. Sun-way.com.tw was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Sunway Scientific id30648 View details | Taiwan, Province of China | Manufacturing / Engineering | — | |
|
***.com.tw zoominfo.com/c/sunway-scientific-corp/456158414 SUNWAY Co., Ltd., a leading Taiwanese distributor and exclusive agent for international scientific and laboratory equipment brands (such as HETTICH, EYELA, JASCO, and SHASHIN KAGAKU). The company specializes in providing advanced laboratory solutions, including centrifuges, freeze dryers, spectrometers, and cell disruptors for research, biotech, and chemical industries. |
|||||
| Ransomware | Tangram Interiors id30614 View details | United Kingdom | Construction / Real Estate | — | |
|
Tangram Interiors is a company based in the United Kingdom, operating in the construction and real estate sector. The company provides interior design and fit-out services. Tangram Interiors was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Tangram Interiors id30614 View details | United Kingdom | Construction / Real Estate | — | |
|
www.***.com Revenue $245.1 Million Founded in 1963, At Tangram Interiors, we've spent decades transforming spaces to inspire and empower. As industry leaders, our reputation stands on top-notch craftsmanship and innovative design. Tangram Interiors is a prominent commercial interior solutions provider and Steelcase dealer, specializing in integrated workspaces, including furniture, technology, and design. Serving Southern California, the Central Valley, and Texas, the firm offers comprehensive services ranging from space planning to custom, bespoke furniture solutions. Client pesonal data included. 400+gb |
|||||
| Ransomware | Tangram Interiors id30614 View details | United States | Construction / Real Estate | — | |
|
www.***.com Revenue $245.1 Million Founded in 1963, At Tangram Interiors, we've spent decades transforming spaces to inspire and empower. As industry leaders, our reputation stands on top-notch craftsmanship and innovative design. Tangram Interiors is a prominent commercial interior solutions provider and Steelcase dealer, specializing in integrated workspaces, including furniture, technology, and design. Serving Southern California, the Central Valley, and Texas, the firm offers comprehensive services ranging from space planning to custom, bespoke furniture solutions. Client pesonal data included. 400+gb |
|||||
| Ransomware | BRAC id30615 View details | Bangladesh | NGOs / Associations | — | |
|
BRAC is one of the largest non-governmental organizations in Bangladesh, working in various sectors including education, healthcare, and economic empowerment. The organization provides a range of services and support to vulnerable communities across the country. BRAC was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | BRAC id30615 View details | Bangladesh | NGOs / Associations | — | |
|
***.net zoominfo.com/c/brac-centre/8079683 is the largest non-governmental development organization in the world, founded in Bangladesh in 1972.Its mission is to empower communities facing poverty, illiteracy, disease, and social injustice.Today, it operates across multiple countries, reaching over 145 million people annually through programs in education, healthcare, livelihood, and human rights |
|||||
| Ransomware | Customs Watch id30616 View details | United States | Retail / E-commerce | — | |
|
Customswatch.com is an e-commerce company operating in the retail sector in the United States, offering various products to its customers. As a retail company, it provides online shopping experiences. Customswatch.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Customs Watch id30616 View details | United States | Retail / E-commerce | — | |
|
***.com zoominfo.com/c/customs-watch/467458469 is an intelligence and IT consulting company specializing in anti-counterfeiting and product protection strategies throughout their lifecycle. The company primarily serves the pharmaceutical sector, working with 22 of the 25 largest pharmaceutical companies globally. Founded in 2001, it employs 51 to 200 people and is an active member of the International AntiCounterfeiting Coalition. |
|||||
| Ransomware | Gallant id30617 View details | Finland | IT | — | |
|
Gallant.fi is a Finland-based company operating in the IT sector, providing various services to its clients. The company's offerings likely include IT consulting, software development, and other technology-related solutions. Gallant.fi was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Gallant id30617 View details | Finland | IT | — | |
|
***.fi zoominfo.com/c/gallant/474332534 is a forward-looking Finnish advisory and accounting company founded in 1967. It provides comprehensive financial, HR administration, taxation, and business law solutions for businesses of all sizes. The company operates in multiple locations across Finland, aiming to keep its clients one step ahead of their competition through modern financial management and strategic support |
|||||
| Ransomware | Hanseata id30618 View details | Germany | Finance / Legal / Insurance | — | |
|
Hanseata.de is a German company operating in the finance, legal, and insurance sectors, providing various financial services to its clients. Located in Germany, the company offers a range of services tailored to the needs of its customers. Hanseata.de was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Hanseata id30618 View details | Germany | Finance / Legal / Insurance | — | |
|
***.de traditional German flat glass wholesaler based near Hamburg, operating since 1953. The company specializes in supplying high-quality glass solutions, including vacuum glass, flat glass, and insulating glass, to commercial clients, architects, and construction firms worldwide. They are particularly known for their extensive stock capacity, specialized consulting for energy-efficient vacuum glazing, and comprehensive global logistics services |
|||||
| Ransomware | Metro Mondego id30595 View details | Portugal | Transportation / Travel / Logistics | — | |
|
Metromondego.pt is a transportation company operating in Portugal, specifically in the sector of travel and logistics. The company provides public transportation services, contributing to the country's infrastructure. Metromondego.pt was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Metro Mondego id30595 View details | Portugal | Transportation / Travel / Logistics | — | |
|
***.pt zoominfo.com/c/metro-mondego-sa/430685182 public transport company responsible for sustainable mobility in the Coimbra, Miranda do Corvo, and Lousã region of Portugal. Originally conceived as a light rail network, the project has been restructured into a fully electric, high-capacity Bus Rapid Transit system known as Metrobus. The network spans 42 kilometers with 42 dedicated stations and 35 electric buses, designed to provide efficient, eco-friendly, and integrated urban transportation for an estimated 13 million passengers annually |
|||||
| Ransomware | Comet Enterprise Corp id30596 View details | Taiwan, Province of China | Manufacturing / Engineering | — | |
|
Comet-bearing.com.tw is a company based in Taiwan, operating in the manufacturing and engineering sector. The company likely provides products and services related to bearing technology, given its name. Comet-bearing.com.tw was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Comet Enterprise Corp id30596 View details | Taiwan, Province of China | Manufacturing / Engineering | — | |
|
***.com.tw zoominfo.com/c/comet-enterprise-corp/425713239 leading Taiwanese industrial bearing distributor founded in 1973, serving as one of the major authorized distributors of the Schaeffler Group's FAG and INA brands in Taiwan. The company provides high-quality precision bearings for machine tools, power machinery, and equipment maintenance, backed by comprehensive factory technical support. With its headquarters in New Taipei City and branches across Taiwan, China, and Thailand, it offers extensive inventory and one-stop procurement solutions to help clients minimize equipment downtime and maintenance costs |
|||||
| Ransomware | Landesbibliothek Coburg id30597 View details | Germany | Education | — | |
|
Landesbibliothek Coburg is a public library located in Coburg, Germany, serving the local community with various educational resources and services. As part of the education sector in Germany, it provides access to a wide range of books, media, and other materials. Landesbibliothek Coburg was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Landesbibliothek Coburg id30597 View details | Germany | Education | — | |
|
***.de zoominfo.com/c/landesbibliothek-coburg/429940598 regional state scientific library in Bavaria, Germany, originally founded in 1547. Located in the historic Ehrenburg Palace in Coburg, it houses a vast collection of around 500,000 volumes, including rare manuscripts, incunabula, and the historical book collections of the former Dukes of Coburg. Since 1973, the library has been administered by the Free State of Bavaria, serving as a vital cultural and research institution dedicated to preserving the region's historical heritage |
|||||
| Ransomware | ALUFE Femszerkezeti Kft id30598 View details | Hungary | Manufacturing / Engineering | — | |
|
Alufe.hu is a Hungarian company operating in the manufacturing and engineering sector. The company is based in Hungary and provides various services and products related to its sector. Alufe.hu was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | ALUFE Femszerkezeti Kft id30598 View details | Hungary | Manufacturing / Engineering | — | |
|
***.hu zoominfo.com/c/alufe-fémszerkezeti-kft/452408141 Hungarian manufacturing and construction company based in Székesfehérvár, with a history of aluminum production dating back to 1968. The company specializes in manufacturing and installing aluminum windows, doors, curtain walls, and complex facade systems, including steel, glass, and ceramic structures. With around 150 employees, it provides comprehensive, high-quality metal structure solutions for commercial and architectural projects across the region |
|||||
| Ransomware | Tooltec id30599 View details | Sweden | Manufacturing / Engineering | — | |
|
Tooltec.se is a company based in Sweden, operating in the manufacturing and engineering sector. The company likely provides various products and services related to its sector. Tooltec.se was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Tooltec id30599 View details | Sweden | Manufacturing / Engineering | — | |
|
***.se zoominfo.com/c/tooltec-ab/371817746 advanced manufacturing company based in Trollhättan, Sweden, specializing in the precision machining of complex components. The company utilizes technologies like 5-axis milling, turning, and Wire EDM to produce high-quality parts for the automotive, energy, aeronautical, and aerospace industries. As an ISO 9001 certified supplier, Tooltec is recognized for its strict quality standards, delivery reliability, and commitment to long-term partnerships with both clients and employees |
|||||
| Ransomware | Terra Vitis id30600 View details | France | Agriculture / Food | — | |
|
Terravitis.com operates in the agriculture and food sector in France, providing various offerings to its customers. As a company in this sector, it plays a role in the country's food production and distribution. Terravitis.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Terra Vitis id30600 View details | France | Agriculture / Food | — | |
|
***.com zoominfo.com/c/terra-vitis/447256156 French national certification for sustainable and responsible winegrowing, founded in 1998 by a group of committed Beaujolais winegrowers. It is the only national certification specifically dedicated to the wine sector and is officially recognized by the French Ministry of Agriculture and Food. The association unites nearly 2,000 members across France, guaranteeing environmentally friendly, socially responsible, and economically viable practices from vine to wine glass through strict annual audits |
|||||
| Ransomware | Vignobles Toutigeac id30601 View details | France | Other | — | |
|
Toutigeac.com is a French entity operating in the other sector, providing various offerings. Located in France, the entity is part of a diverse range of organizations in the country. Toutigeac.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Vignobles Toutigeac id30601 View details | France | Other | — | |
|
***.com zoominfo.com/c/vignobles-toutigeac/456813413 Vignobles Toutigeac family-run wine estate located in Targon, within the Bordeaux and Entre-Deux-Mers appellations in France. Originally an ecclesiastical property managed by monks, the estate now spans approximately 42 hectares of vineyards under the guidance of Oriane and Philippe Mazeau. The winery produces classic red and white Bordeaux wines, recognized for their smooth tannins and balanced fruit profiles, successfully blending historical tradition with modern winemaking practices |
|||||
| Ransomware | Dink Co Ltd id30602 View details | Japan | IT | — | |
|
Dink.co.jp is a Japanese company operating in the IT sector, providing various services and solutions. Located in Japan, the company is involved in the IT industry, offering a range of products and services. Dink.co.jp was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Dink Co Ltd id30602 View details | Japan | IT | — | |
|
***.co.jp zoominfo.com/c/dink-co-ltd/1340493249 Osaka-based Japanese company specializing in the development, design, and sale of wastewater treatment systems specifically for cardboard manufacturing plants. Originally founded as a cardboard printing ink manufacturer, the company leveraged its industry knowledge to transform into a dedicated water treatment equipment specialist in 2021. Today, their eco-friendly systems are installed and operational in over 430 factories across Japan, helping to clean industrial wastewater to safe environmental levels |
|||||
| Ransomware | Lsn id30604 View details | IT | — | ||
|
lsn.io operates in the IT sector, providing various services. The company's specific offerings and location are not publicly disclosed. lsn.io was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Lsn id30604 View details | IT | — | ||
|
***.io zoominfo.com/c/lsn/557824732 software development company specializing in tailor-made IT solutions for the insurance industry. Founded in 2008 as Logisfera Nova and rebranded in 2020, the company provides full-stack services including back-office development, UX/UI design, data science, and enterprise software architecture. Headquartered in Gdańsk, Poland, with a branch in Athens, Greece, LSN partners with leading insurance sector clients to deliver agile, business-focused, and customized technological solutions |
|||||
| Ransomware | Lsn id30604 View details | Poland | IT | — | |
|
***.io zoominfo.com/c/lsn/557824732 software development company specializing in tailor-made IT solutions for the insurance industry. Founded in 2008 as Logisfera Nova and rebranded in 2020, the company provides full-stack services including back-office development, UX/UI design, data science, and enterprise software architecture. Headquartered in Gdańsk, Poland, with a branch in Athens, Greece, LSN partners with leading insurance sector clients to deliver agile, business-focused, and customized technological solutions |
|||||
| Ransomware | Giraudi Group id30605 View details | Italy | — | — | |
|
Giraudi.com is an Italian entity, presumably operating in the IT sector. The company may offer various services or products, although specific details are not available. Giraudi.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Giraudi Group id30605 View details | Italy | — | — | |
|
***.com zoominfo.com/c/giraudi-group/1157060956v Monaco-based company founded in 1968, specializing in the import, export, and distribution of premium meats, including exclusive Japanese Kobe and certified Black Angus beef. Under the leadership of Riccardo Giraudi, the group has expanded into a comprehensive hospitality and lifestyle brand, owning and managing over 35 restaurants worldwide, most notably the famous Beefbar. The company also operates in the lifestyle sector with fashion, art, and premium spirits, while providing global consulting and franchising services for the food and beverage industry |
|||||
| Ransomware | Mesto Celakovice id30606 View details | Czechia | — | — | |
|
Celakovice.cz is the official website of the municipality of Celakovice, a town located in the Central Bohemian Region of the Czech Republic. The website provides information on local services, news, and events. Celakovice.cz was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Mesto Celakovice id30606 View details | Czechia | — | — | |
|
***.cz zoominfo.com/c/město-čelákovice/426355970 town in the Central Bohemian Region of the Czech Republic, situated on the Elbe River approximately 27 kilometers from Prague. With a population of around 12,000 residents, it serves as a local administrative and cultural hub. The official website functions as the primary municipal portal, offering citizens and visitors essential information, administrative services, news, and contact details for the local government |
|||||
| Ransomware | Kaneko id30607 View details | Japan | Manufacturing / Engineering | — | |
|
Kaneko Corp is a Japanese company operating in the manufacturing and engineering sector. The company is based in Japan and provides various products and services related to its sector. Kaneko Corp was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Kaneko id30607 View details | Japan | Manufacturing / Engineering | — | |
|
***.co.jp zoominfo.com/c/kaneko/540044079 Japanese software company based in Itoigawa, Niigata, specializing in construction project management solutions. For over three decades, the company has developed the CDPM series, a widely recognized software for creating and managing complex construction schedules. Recently, the company has been actively driving digital transformation in the construction industry through its advanced CDPM-X64 platform, which introduces innovative features like native JSON support and comprehensive schedule analysis tools |
|||||
| Ransomware | Byggelit Sverige id30608 View details | Sweden | — | — | |
|
Byggelit.se is a Swedish company operating in the construction sector, providing various services to its clients in Sweden. The company is involved in building and construction projects, offering a range of services to the Swedish market. Byggelit.se was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Byggelit Sverige id30608 View details | Sweden | — | — | |
|
***.se zoominfo.com/c/byggelit-sverige-ab/6046017 Swedish manufacturing company based in Lit that has been producing particleboard since 1962. They specialize in sustainable, customized particleboard component solutions, using advanced CNC technology to cut, drill, and mill panels to exact customer specifications. This approach minimizes on-site labor and waste while promoting a circular economy by recycling production scraps into new boards |
|||||
| Ransomware | Terry P Moosmann CPA PC id30609 View details | United States | — | — | |
|
Terry P Moosmann CPA PC is an accounting firm based in the United States, providing financial services to clients. As a certified public accounting practice, it offers a range of services including tax preparation, auditing, and financial planning. Terry P Moosmann CPA PC was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Terry P Moosmann CPA PC id30609 View details | United States | — | — | |
|
Terry P. Moosmann CPA PC is a local accounting and tax preparation firm based in Washington, Missouri. Owned by Terry Moosmann, the company provides professional financial, accounting, and tax services tailored to individuals and small businesses in the surrounding communities. The firm is recognized for its personalized approach and long-standing presence in the local business community |
|||||
| Ransomware | Royal Foods id30475 View details | Australia | Hospitality / Food & Beverage / Tourism | — | |
|
Royalfoods.com.au is an Australian company operating in the hospitality and food and beverage sector, likely providing services to the tourism industry. The company is based in Australia and offers various food-related services. Royalfoods.com.au was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Royal Foods id30475 View details | Australia | Hospitality / Food & Beverage / Tourism | — | |
|
***.com.au zoominfo.com/c/royal-foods/98011908 Royal Foods is a privately-owned Australian gourmet food company that supplies high-quality, innovative products to the food service sector and independent retailers.Headquartered in Brisbane and operating across multiple states, the company employs around 250 staff dedicated to supporting the local food industry.Furthermore, their specialized Food Solutions division focuses on helping commercial kitchens solve challenges related to profitability and operational efficiency |
|||||
| Ransomware | Ferretería Scopazzo id30476 View details | Argentina | Retail / E-commerce | — | |
|
Scopazzo.com.ar operates in the retail and e-commerce sector in Argentina, offering various products and services to its customers. As an e-commerce platform, it provides online shopping experiences for users. Scopazzo.com.ar was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Ferretería Scopazzo id30476 View details | Argentina | Retail / E-commerce | — | |
|
***.com.ar rocketreach.co/ferreteria-scopazzo-profile_b7dd5f00c0ca3ccc Ferretería Scopazzo is a prominent family-owned hardware and industrial tools retailer based in Buenos Aires, Argentina, boasting over 60 years of market experience.They specialize in supplying electrical, pneumatic, and household equipment from major global brands like Makita, DeWalt, and Bosch to both individuals and businesses |
|||||
| Ransomware | Fortray id30477 View details | IT | — | ||
|
Fortray.com is a company operating in the IT sector. The company provides various services, although specific details about its offerings are not readily available. Fortray.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Fortray id30477 View details | IT | — | ||
|
***.com zoominfo.com/c/fortray-global-services-ltd/446823730 Fortray Global Services Limited is a UK-based IT company founded in 2011 that operates across tech education, managed IT services, and global recruitment.They offer specialized Tech and AI bootcamps with 1:1 mentorship to help individuals build in-demand digital skills and launch successful tech careers.Furthermore, they act as a Managed Service Provider (MSP) delivering scalable cloud solutions and cybersecurity to businesses.Simultaneously, their recruitment division connects ambitious IT professionals with top job opportunities worldwide |
|||||
| Ransomware | Martin Cava id30478 View details | Spain | Other | — | |
|
Martincava.com is an entity based in ES, operating in the other sector. The company likely provides various services, given its sector classification. Martincava.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Martin Cava id30478 View details | Spain | Other | — | |
|
***.com zoominfo.com/c/martin-cava-sa/366183664 Martin Cava S.A. is a prominent Argentine supplier of equipment, specialty papers, and consumables for the graphic and printing industry, boasting nearly 90 years of market experience.Based in Buenos Aires, they distribute a wide array of products including HP plotters, inks, holographic vinyls, and offset printing materials.The company is highly regarded for offering innovative solutions that allow businesses to personalize garments, promotional items, and various surfaces |
|||||
| Ransomware | Aveiro Constructors Limited id30479 View details | Portugal | Construction / Real Estate | — | |
|
Aveiroconstructors.com is a company based in Portugal, operating in the construction and real estate sector, providing various services to clients. The company's offerings likely include construction management, real estate development, and related services. Aveiroconstructors.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Aveiro Constructors Limited id30479 View details | Portugal | Construction / Real Estate | — | |
|
***.com Aveiro Constructors Limited is a Canadian general contractor established in 1976 and headquartered in Southwestern Ontario. The company specializes in the Industrial, Commercial, and Institutional (ICI) sectors, delivering design-build, new construction, and renovation projects both locally and internationally. Originally starting with pre-engineered steel buildings, they have grown over the decades into a comprehensive construction firm offering specialized services like HVAC and project management |
|||||
| Ransomware | Triquesta id30480 View details | Mexico | IT | — | |
|
Triquesta.com is an IT company based in Mexico, providing various IT services. The company operates in the IT sector, offering solutions to its clients. Triquesta.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Triquesta id30480 View details | Mexico | IT | — | |
|
***.com zoominfo.com/c/triquesta-pte-ltd/346670373 Triquesta is a Singapore-based fintech company specializing in collateral, compliance, and risk management software for structured commodity finance.Founded by seasoned banking professionals, the firm provides cutting-edge technology that helps global banks and direct lenders reliably track assets and mitigate risks.With a strong international presence across Europe and Australia, their solutions empower financial institutions to navigate complex commodity markets efficiently |
|||||
| Ransomware | Vicenzi Group id30481 View details | Italy | Agriculture / Food | — | |
|
Vicenzi.it operates in the agriculture and food sector in Italy, providing various offerings to its customers. As a company in this sector, vicenzi.it plays a role in the country's food production and distribution. Vicenzi.it was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Vicenzi Group id30481 View details | Italy | Agriculture / Food | — | |
|
***.it zoominfo.com/c/vicenzi-spa/1101977046 Vicenzi Group, founded in 1905 by Matilde Vicenzi, is a historic Italian confectionery company renowned for producing high-quality biscuits and traditional pastries. Based in Verona, the family-owned business has grown into a global brand dedicated to becoming the world leader in premium Italian sweet treats. The company employs hundreds of people and successfully combines authentic recipes with modern sustainable practices to deliver its products to international markets |
|||||
| Ransomware | Energon id30482 View details | Czechia | Energy | — | |
|
Energon.cz operates in the energy sector in the Czech Republic, providing various energy-related services. As a key player in the country's energy landscape, the company's activities are crucial to the sector's overall functioning. Energon.cz was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Energon id30482 View details | Czechia | Energy | — | |
|
***.cz zoominfo.com/c/energon/430910504 ENERGON HOLDING is a prominent Czech group uniting various companies specialized in energy services, photovoltaics, and modern sustainable technologies. With over 25 years of industry experience, the group drives innovations that enhance the energy independence and competitiveness of the Czech Republic. They also actively invest in startups focused on renewable energy optimization, diagnostics, and the security of power infrastructure |
|||||
| Ransomware | Open Options id30483 View details | Ireland | IT | — | |
|
ooaccess.com is an IT company based in Ireland, providing various IT services. The company operates in the IT sector, offering services to clients in Ireland. ooaccess.com was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Open Options id30483 View details | Ireland | IT | — | |
|
***.com Open Options was a prominent Texas-based software company specializing in open-architecture access control solutions, best known for its flagship enterprise platform, DNA Fusion. The company focused on delivering scalable physical security and identity management software tailored to complex organizational needs. Following a strategic acquisition, the company's technology and brand were integrated into Acre Security, where it continues to operate and evolve as DNA Fusion by acre security |
|||||
| Ransomware | INTERNET AG id30484 View details | Germany | IT | — | |
|
inet.de is a German IT company providing various services in the information technology sector. Located in Germany, the company operates in the IT industry, offering a range of solutions. inet.de was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | INTERNET AG id30484 View details | Germany | IT | — | |
|
***.de zoominfo.com/c/inet/429716454 INTERNET AG is a professional German IT service provider specializing in reliable, sustainable, and flexible hosting and server solutions. The company delivers customized IT infrastructures, managed services, and global network connectivity tailored to complex business needs. Alongside its partner INTERNIC GmbH, it offers comprehensive enterprise software and secure digital operations for corporate clients |
|||||
| Ransomware | Crossroads Medical Management id30485 View details | United States | Healthcare / Pharma | — | |
|
Crossroads Medical Management is a healthcare company based in the US, operating in the medicine sector. The company provides medical management services. Crossroads Medical Management was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Crossroads Medical Management id30485 View details | United States | Healthcare / Pharma | — | |
|
***.com zoominfo.com/c/crossroads-medical-management-llc/354034077 Crossroads Medical Management is a healthcare management company headquartered in Perry, Georgia, specializing in full-service financial, clinical, and operations management for the senior community. As a legacy organization with three generations of experience, they focus on providing quality-oriented care and a home-like environment across multiple affiliated skilled nursing facilities. Operating primarily in states like Georgia, the company manages several senior care centers, generating an estimated annual revenue of over $12 million while expanding to meet the evolving needs of elderly residents |
|||||
| Ransomware | Pharma Wholesale id30486 View details | Healthcare / Pharma | — | ||
|
Pharmawholesale.com operates in the healthcare and pharmaceutical sector, potentially offering wholesale pharmaceutical products and services. The entity's specific location and offerings are not publicly disclosed. Pharmawholesale.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Pharma Wholesale id30486 View details | Healthcare / Pharma | — | ||
|
***.com zoominfo.com/c/pharma-wholesale/353577758 Pharma Wholesale Corp. is a licensed pharmaceutical wholesaler and distributor headquartered in Florida, USA, with over 24 years of industry experience. The company specializes in the global distribution of prescription and OTC medications, vitamins, supplements, and health and beauty products. Operating as a mid-sized enterprise, they supply affordable healthcare solutions to pharmacies and medical facilities both domestically and internationally |
|||||
| Ransomware | Pharma Wholesale id30486 View details | United States | Healthcare / Pharma | — | |
|
***.com zoominfo.com/c/pharma-wholesale/353577758 Pharma Wholesale Corp. is a licensed pharmaceutical wholesaler and distributor headquartered in Florida, USA, with over 24 years of industry experience. The company specializes in the global distribution of prescription and OTC medications, vitamins, supplements, and health and beauty products. Operating as a mid-sized enterprise, they supply affordable healthcare solutions to pharmacies and medical facilities both domestically and internationally |
|||||
| Ransomware | Welders Supply Equipment Rentals id30487 View details | United States | Construction / Real Estate | — | |
|
WS Rentals operates in the construction and real estate sector in the United States, providing various services and offerings to clients. The company is involved in rental properties and construction projects, catering to the needs of its customers. WS Rentals was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | Welders Supply Equipment Rentals id30487 View details | United States | Construction / Real Estate | — | |
|
***.com zoominfo.com/c/welders-supply--equipment-rentals/355927450 WSE Rentals (Welders Supply & Equipment Rentals) is a specialized equipment rental company headquartered in Port Allen, Louisiana. They focus on providing a comprehensive range of high-quality, reliable welding tools and machinery from well-known industry brands for various industrial projects. The company serves contractors and businesses by offering tailored rental solutions and dedicated delivery services to support their operational needs |
|||||
| Ransomware | VASBE id30488 View details | Russian Federation | IT | — | |
|
Vasbe.com is an IT company based in Russia, providing various IT services. The company operates in the IT sector, offering its services to clients. Vasbe.com was listed as a ransomware victim associated with thegentlemen |
|||||
| Ransomware | VASBE id30488 View details | Russian Federation | IT | — | |
|
***.com zoominfo.com/c/vigilantes-asociados-al-servicio-de-banca-y-empresas-vasbe-sl/458305259 VASBE Vigilantes Asociados Al Servicio De Banca Y Empresas Vasbe is a well-established Spanish private security and surveillance company with over 30 years of industry experience. Based primarily in the Salamanca region, they provide comprehensive protection solutions including physical guarding, 24/7 central alarm monitoring, and advanced video surveillance. The company specializes in designing customized security plans to safeguard businesses, financial institutions, and valuable assets around the clock. |
|||||
| Ransomware | Gene Codes Forensics id30489 View details | United States | Healthcare / Pharma | — | |
|
Genecodesforensics.com is a US-based company operating in the healthcare and medicine sector, providing services related to genetic coding and forensic analysis. The company is likely involved in the analysis of genetic data for medical and research purposes. Genecodesforensics.com was listed as a ransomware victim associated with thegentlemen. |
|||||
| Ransomware | Gene Codes Forensics id30489 View details | United States | Healthcare / Pharma | — | |
|
***.com zoominfo.com/c/gene-codes-forensics-inc/1208843964 Gene Codes Forensics is a Michigan-based technology company and a global leader in disaster victim identification and human DNA matching. They provide specialized forensic software, such as Sequencher and M-FISys, which are utilized by numerous states and countries as central DNA resources for identifying remains in mass disasters. In addition to providing software and consulting services, the company operates a one-million-dollar Humanitarian Grant Program to support non-profit organizations conducting forensic DNA testing |
|||||
| Ransomware | Lopes Law id30490 View details | United States | Finance / Legal / Insurance | — | |
|
Lopes Law LLC is a US-based company operating in the finance, legal, and insurance sector, providing various services to its clients. The company is located in the United States and offers expertise in legal and financial matters. Lopes Law LLC was listed as a ransomware victim associated with thegentlemen. |
|||||