Back to Ransomware Database
Ransomware Group
thegentlemen
The Gentlemen is a RaaS group that emerged in July–August 2025, rapidly claiming over 320 victims across 17+ countries by offering affiliates a 90% revenue share, deploying a Go-based locker against Windows, Linux, NAS, and BSD systems; a compromised C2 server in 2026 revealed more than 1,570 linked victims.
504 Known Victims
Threat Level
CRITICAL
Known Infrastructure
The following Tor hidden services have been associated with this group:
tezwsse5czllksjb7cwp65rvnk4oobmzti2znn42i43bjdfd2prqqkad.onion
⚠️ Warning: These are malicious sites. Do not visit without proper security measures.
Check If You're Affected
Search our database to see if your organization appears in thegentlemen's victim list.
Try It NowFree
Try:|
Get instant threat analysis with risk scores, threat categories, and detailed reports.