Ransomware Group intelligence
Netwalker
InactiveTrack Netwalker with 26 published victims and 1 known leak locations in a single intelligence view.
Overview
Netwalker is tracked by Breach House as a ransomware group with 26 published victims.
United States is currently the most targeted country in this dataset.
1 known leak locations are currently associated with this group.
Top Countries
Interactive distribution based on the currently visible victims list.
Known Leak Locations (1)
| Label | Type | Availability | Links |
|---|---|---|---|
| Leak location 1 | Onion service | Unknown | rnfdsgm6wb6j6su5txkekw4u4y47kp2eatvu7d6xhyn5cs4lt4pdrqqd.onion |
Top Activity Sectors
No sector intelligence available.
Ransom Notes (0)
▼No ransom notes available for this group.
Tools Used
▼No tools used available.
YARA Rules (0)
▼No YARA rules available.
Indicators of Compromise (0)
▼No IoCs available for this group.
Negotiation Chats (0)
▼No negotiation chats available.
Research Sources
No external research sources linked yet.
Victims (26)
Search, filter and paginate the victim timeline for Netwalker.
| Type | Target | Discovered | Country | Business Category | Intel Link |
|---|---|---|---|---|---|
| Ransomware | Nygard International id544 View details | Canada | Services | — | |
|
No additional victim description available. |
|||||
| Ransomware | CSAT Solutions id535 View details | Services | — | ||
|
No additional victim description available. |
|||||
| Ransomware | Enel Group id502 View details | Services | — | ||
|
No additional victim description available. |
|||||
| Ransomware | KYB Corporation id488 View details | United States | Services | — | |
|
No additional victim description available. |
|||||
| Ransomware | Wilmington Surgical Associates id490 View details | United States | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Equinix id477 View details | United States | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | K-Electric (electric utility supplier) id478 View details | Pakistan | Energy | — | |
|
No additional victim description available. |
|||||
| Ransomware | Jands id468 View details | Australia | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Cygilant (threat detection cybersecurity company) id469 View details | IT | — | ||
|
No additional victim description available. |
|||||
| Ransomware | Direccion Nacional de Migraciones (Argentina's official immigration agency) id465 View details | Argentina | Communication / Marketing | — | |
|
No additional victim description available. |
|||||
| Ransomware | Entrust Energy id461 View details | United States | Energy | — | |
|
No additional victim description available. |
|||||
| Ransomware | Center for Fertility and Gynecology (Los Angeles) id449 View details | United States | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Olympia House (Petaluma) id450 View details | United States | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Forsee Power id457 View details | Energy | — | ||
|
No additional victim description available. |
|||||
| Ransomware | Canadian Tire id459 View details | Canada | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Alfanar id441 View details | Other | — | ||
|
No additional victim description available. |
|||||
| Ransomware | Trinity Metro (Fort Worth transit agency) id432 View details | United States | Communication / Marketing | — | |
|
No additional victim description available. |
|||||
| Ransomware | Lorien Health Services id401 View details | United States | Healthcare / Pharma | — | |
|
No additional victim description available. |
|||||
| Ransomware | Columbia College of Chicago id399 View details | United States | Education | — | |
|
No additional victim description available. |
|||||
| Ransomware | University of San Francisco (UCSF) id393 View details | United States | Education | — | |
|
No additional victim description available. |
|||||
| Ransomware | Michigan State University id379 View details | United States | Education | — | |
|
No additional victim description available. |
|||||
| Ransomware | Network of Village of Weiz id361 View details | Austria | Telecommunications | — | |
|
No additional victim description available. |
|||||
| Ransomware | Spectra Logic id362 View details | United States | Other | — | |
|
No additional victim description available. |
|||||
| Ransomware | Northwest Territories Power Corporation id358 View details | Canada | Energy | — | |
|
No additional victim description available. |
|||||
| Ransomware | Champaign-Urbana Public Health District id339 View details | United States | Healthcare / Pharma | — | |
|
No additional victim description available. |
|||||
| Ransomware | Toll Group id323 View details | Australia | Services | — | |
|
No additional victim description available. |
|||||