Patcher

Aliases: FileCoder, Findzip

First seen
2017-02-01 00:00:00
Malware type
ransomware
Last IoC activity
2026-07-19 18:59:28
Profile updated
2026-07-07 15:42:53

Context

Patcher is ransomware that specifically targets macOS users, attempting to encrypt their files and demand a ransom payment for decryption. It has also been known under the aliases FileCoder and Findzip.

Related threat objects

Reports & references

  • blog.malwarebytes.com — Decrypting After A Findzip Ransomware Infection (report)
  • bleepingcomputer.com — New Macos Patcher Ransomware Locks Data For Good No Way To Recover Your Files (report)
  • malpedia.caad.fkie.fraunhofer.de — Osx.Patcher (report)
  • ESET — New Crypto Ransomware Hits Macos (report)

External references