ThreatFox Database
Indicators of Compromise (IOCs) on ThreatFox are associated with a certain malware fas. A malware sample can be associated with only one malware family. The page below gives you an overview on indicators of compromise associated with win.ghost_rat.
You can also get this data through the ThreatFox API.
Database Entry
| Malware: | Ghost RAT |
|---|---|
| Malware alias: | Farfli, Gh0st RAT, PCRat |
| First seen: | 2021-08-06 14:00:45 UTC |
| Last seen: | 2025-10-22 08:02:18 UTC |
| Number of IOCs: | 1'219 |
| Malpedia: | https://malpedia.caad.fkie.fraunhofer.de/details/win.ghost_rat |
Indicators Of Compromise
The table below shows all indicators of compromise (IOCs) that are associated with this particulare malware family (max 1000).
| Date (UTC) | IOC | Malware | Tags | Reporter |
|---|