IOC Radar
MD5HighVerifiedSignal 87/100

adf675ffc1acb357f2d9f1a94e016f52

Location
PeruPeru
First Seen
Sep 17, 2025
Last Seen
Jul 10, 2026
Sep 17
First Seen
317d ago
Jul 10
Last Seen
21d ago
58
Reports
source reports
95%
Confidence
high
Found in 58 reports. Confidence: high. · Confidence scores are heuristic. Verify before acting on results.
MD5 Hash
MD5 file hash associated with malicious samples.
MISP Category
Artifacts Dropped
Hash Algorithm
MD5
Confidence
95%
Signal Score
87 / 100
IDS Rule
Yes
Threat Context
Tags
MITRE ATT&CK

MITRE ATT&CK TTPs

61 techniques

Feed Intelligence Summary

58 reports95% confidence
AT
Abuse.ch ThreatFox
Jul 10, 2026
3804 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3745 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3736 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3733 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3732 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3718 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3712 IOCs in report
AT
Abuse.ch ThreatFox
Jul 10, 2026
3701 IOCs in report
AT
Abuse.ch ThreatFox
Jul 9, 2026
3757 IOCs in report
AT
Abuse.ch ThreatFox
Jul 9, 2026
3741 IOCs in report

Activity Timeline

45 total obs
Jul 10Jul 8

Threat Activity Heatmap

· Peak: 2026-07-09
Less
More
Mon
Wed
Fri
Jul
Aug
·
·
·
Sep
·
·
·
·
Oct
·
·
·
Nov
·
·
·
Dec
·
·
·
·
Jan
·
·
·
Feb
·
·
·
Mar
·
·
·
·
Apr
·
·
·
May
·
·
·
Jun
·
·
·
·
Jul
·
·
24h
0
Dormant
7d
0
Dormant
30d
45
Critical
3mo
45
Critical
Threat ScoreHigh Risk
87
SIGNAL
Signal Score
95%
Confidence
58
Reports
First seenSep 17, 2025
Last seenJul 10, 2026
Verified IOC

VirusTotal

Not checked

WHOIS

description
Payload_Delivery indicators. Date: Apr 3, 2026. Part 1/2. For more threat intelligence visit https://ltna.com.au/cyber
references
https://research.checkpoint.com/2026/thus-spoke-the-gentlemen/, https://www.group-ib.com/blog/hastalamuerte-gentlemen-raas-ttps/, https://www.cybereason.com/blog/the-gentlemen-ransomware, https://ltna.com.au/cyber, IOCs.2026.pdf, IOCs.2026.2.csv, https://www.trendmicro.com/en_us/research/25/i/unmasking-the-gentlemen-ransomware.html, Book2.csv, Nov.Week2.csv, https://asec.ahnlab.com/ko/91514/

Export & API

STIX 2.1 Bundle
CSV Export
Permalink

IOC Journey

high
First detected 10 months ago · Last seen 21 days ago
Appeared in 58 threat reports from 10 sources