Contact us Buy Me a Coffee

Sponsored by Hudson Rock Use Hudson Rock's free cybercrime intelligence tools to learn how Infostealer infections are leading to ransomware attacks

Netwalker

NetWalker ransomware group operates by the threat actor known as "CIRCUS SPIDER". The NetWalker ransomware was discovered in 2019. The group mainly targeting the Asia Pacific region but can attack globally. The group uses common attacking tools like Mimikatz and other legitimate tools (LOLBINS) like PSTools, AnyDesk, TeamViewer, NLBrute, and more. The group knowing by targeting the healthcare sector. Finally, in January 2021, Netwalker was takedown by the authorities, the police have confiscated hundreds of thousands of dollars in ransom payments collected by the Netwalker group, and they seized servers and disrupted the infrastructure and the darknet websites of the Netwalker ransomware group.
External information

Victims
26
 
First Discovered
2020-01-31
victim
Last Discovered
2020-12-12
victim
Inactive Since
5yrs
more than
Avg Delay
N/A
attack→claim
Infostealer
0.0%
victims with domain
Countries
6
hit
View Victims on World Map View Group Statistics

Known Locations (1)
Favicon Title Type Available Last Visit Server Info FQDN
favicon No 2026-04-28T07:25:19 rnfdsgm6wb6j6su5txkekw4u4y47kp2eatvu7d6xhyn5cs4lt4pdrqqd.onion

Target
Top 5 Activity Sectors
  • Technology 4
  • Energy 4
  • Manufacturing 4
  • Healthcare 4
  • Public Sector 3
Top 5 Countries
  • US flag United States 13
  • CA flag Canada 3
  • AU flag Australia 2
  • PK flag Pakistan 1
  • AR flag Argentina 1

Heatmap

Ransom Notes (1)

Tools Used
This information is provided by Ransomware-Tool-Matrix
Discovery RMM Tools Defense Evasion Credential Theft OffSec Networking LOLBAS Exfiltration
AdFind



Mimikatz

ProcDump
Cobalt Strike


PsExec



YARA Rules (1)

Victims (26)
Logo
Discovered: 2020-12-12 (5y ago)
No description available
Logo
Discovered: 2020-12-01 (5y ago)
No description available
Logo
Discovered: 2020-10-19 (5y ago)
No description available
Logo
Discovered: 2020-10-01 (5y ago)
No description available
Logo
Discovered: 2020-10-01 (5y ago)
No description available
Logo
Discovered: 2020-09-07 (5y ago)
No description available
Logo
Discovered: 2020-09-07 (5y ago)
No description available
Logo
Discovered: 2020-09-01 (5y ago)
No description available
Logo
Discovered: 2020-09-01 (5y ago)
No description available
Logo
Discovered: 2020-08-05 (5y ago)
No description available
Logo
Discovered: 2020-08-01 (5y ago)
No description available
Logo
Discovered: 2020-08-01 (5y ago)
No description available
Logo
Discovered: 2020-08-01 (5y ago)
No description available
Logo
Discovered: 2020-08-01 (5y ago)
No description available
Logo
Discovered: 2020-07-09 (5y ago)
No description available
Logo
Discovered: 2020-07-01 (5y ago)
No description available
Logo
Discovered: 2020-06-06 (5y ago)
No description available
Logo
Discovered: 2020-06-03 (5y ago)
No description available
Logo
Discovered: 2020-06-01 (5y ago)
No description available
Logo
Discovered: 2020-05-27 (5y ago)
No description available
Logo
Discovered: 2020-05-01 (6y ago)
No description available
Logo
Discovered: 2020-05-01 (6y ago)
No description available
Logo
Discovered: 2020-04-30 (6y ago)
No description available
Logo
Discovered: 2020-03-10 (6y ago)
No description available
Logo
Discovered: 2020-01-31 (6y ago)
No description available