Ransomware victim disclosure
← All victimsDomis ApS
listed as Domis · Claimed by Thegentlemen · listed 5 days ago
Status timeline
- ListedSep 7, 2026
- Data leakeddate unknown
At a glance
- Group
- Thegentlemen
- Status
- Data leaked
- Country
- Denmark
- Sector
- Retail & E-Commerce
- Listed on leak site
- Sep 7, 2026
About the victim
AI dossier — public-source company profileDomis ApS is a Danish property development and management company based in Aarhus that specializes in residential real estate development, investment, and operation. The company focuses on creating housing solutions across central Aarhus and manages several residential and commercial properties including apartment buildings and mixed-use developments.
- Industry
- Real Estate Development & Property Management
- Address
- Helga Pedersens Gade 63, 8000 Aarhus C, Denmark
Attack summary
Severity: low — No attack details, proof, or data exposure claimed in the leak post — only a company listing and descriptive profile.The leak post does not describe a specific attack. It contains only a company profile and business description without claiming encryption, exfiltration, or data theft.
What the group claims
domis.dk zoominfo.com/c/domis/456416204 DOMIS is a Danish cleaning company with a social mission, founded in 2003 by John Møller Rasmussen, HQ'd in Odense with a branch in Copenhagen. Its signature: combining professional cleaning services with actively hiring people outside the labour market — the long-term unemployed, those on sickness benefits and early retirees — under the slogan "Rengøring med mennesker" ("Cleaning with people"). Legally lean setup (CVR 17 69 44 19), with the staffing agency Flex Job Randers under the same group umbrella, enabling emergency cleaning on short notice for clients. Bottom line: a small, quietly principled Danish services firm that turned social inclusion into its business model — a rare "cleaning with a conscience" operator.
Sources
- Victim sitedomis.dk
Source
Indexed 5 days agoThis page surfaces a public ransomware disclosure indexed by Darkfield. Original posts come from the operator's own leak site; we cross-check against ransomware.live, RansomLook and RansomWatch where applicable. Share this URL freely.
Is this your supplier? Your competitor? You?
Pro plans monitor your domain, corporate emails, and crypto wallets across every new ransomware leak-site post, breach dump and Telegram callout — alerts within 5 minutes.

