ThreatFox Database

Indicators of Compromise (IOCs) on ThreatFox are associated with a certain malware fas. A malware sample can be associated with only one malware family. The page below gives you an overview on indicators of compromise assocaited with win.ghost_rat.

You can also get this data through the ThreatFox API.

Database Entry


Malware: Ghost RAT
Malware alias:Farfli, Gh0st RAT, PCRat
First seen:2021-08-06 14:00:45 UTC
Last seen:2022-08-03 10:35:54 UTC
Number of IOCs:69
Malpedia: https://malpedia.caad.fkie.fraunhofer.de/details/win.ghost_rat

Indicators Of Compromise


The table below shows all indicators of compromise (IOCs) that are associated with this particulare malware family (max 1000).

Date (UTC)IOCMalwareTagsReporter