← Back to Ransomware Chk

Rancoz

Inactive
Rancoz is a Windows-targeting ransomware strain first observed in November 2022 that appends the ".rec_rans" extension to encrypted files, considered a Vice Society copycat, deployed against a small number of organizations using double extortion and linked to the same developer as the "Buddy" ransomware.
6 Victims
May 5, 2023 First Discovered
Sep 3, 2023 Last Discovered
973 Days Inactive
0% Infostealer
0/1 Sites Online
Top Sectors
Manufacturing 3
Business Services 1
Construction 1
Technology 1
Known Locations (1)
Rancoz | Blog
ze677xuzard4lx4iul2yzf5ks4gqqzoulgj5u4n5n4bbbsxjbfr7eayd.onion
Victims (6)
DDB Unlimited (ddbunlimited.com)
Manufacturing Discovered: Sep 3, 2023 · Attack est.: Sep 3, 2023
Manufactures
Rick Ramos Law (rickramoslaw.com)
Business Services Discovered: Sep 3, 2023 · Attack est.: Sep 3, 2023
Legal Services industry
Industrial Heat Transfer (iht-inc.com)
Manufacturing Discovered: Jul 7, 2023 · Attack est.: Jul 7, 2023
Custom Heat Exchanger Manufacturer
Air Comfort (aircomfort.ac)
Construction Discovered: Jun 14, 2023 · Attack est.: Jun 14, 2023
Construction industry
RIC Electronics (ricelectronics.com)
Manufacturing Discovered: May 5, 2023 · Attack est.: May 5, 2023
Electrical Equipment Manufacturing
TrueLogic (truelogiccompany.com)
Technology Discovered: May 5, 2023 · Attack est.: May 5, 2023
Software and services company