Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Orca

| Active

Orca is a ransomware group that emerged in September 2024, identified as a variant of the Zeppelin malware family, targeting organizations in manufacturing and logistics across Taiwan, Tunisia, Austria, and France, claiming to avoid hospitals, government institutions, and non-profits.

Victims
5
 
First Discovered
2024-09-16
victim
Last Discovered
2026-04-27
victim
Inactive Since
16
days
Avg Delay
N/A
attack→claim
Infostealer
20.0%
victims with domain
Countries
5
hit
View Victims on World Map View Group Statistics
Attack Velocity — Last 12 months

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon Leaks No 2026-04-28T07:25:36 orca66hwnpciepupe5626k2ib6dds6zizjwuuashz67usjps2wehz4id.onion

Target
Top 5 Activity Sectors
  • Technology 2
  • Agriculture and Food Production 1
  • Transportation/Logistics 1
  • Manufacturing 1
Top 5 Countries
  • IT flag Italy 1
  • AT flag Austria 1
  • CO flag Colombia 1
  • CN flag China 1
  • TN flag Tunisia 1

Heatmap

YARA Rules (1)

Victims (5)
Logo
Discovered: 2026-04-27 (16d ago)
Casale del Giglio was founded in 1967 by Dr. Berardino Santarelli, a native of t...…
Logo
Discovered: 2025-05-07 (1y ago)
​Lutz GmbH, operating under the name Transport Lutz Tulln, is a privately held...…
Logo
Discovered: 2024-10-04 (1y ago)
Transtec SAS is a company that operates in the Commercial Printing industry.Addi...…
Logo
Discovered: 2024-09-18 (1y ago)
Chernan Technology Co. Ltd. was founded on April 10th, 1984, as a subsidiary of ...…
Logo
Discovered: 2024-09-16 (1y ago)
Company product portfolio covers PP and Polyester plastic sheeting with a good r...…