Ghost64exe 90%

Some variants of the Ghost RAT family use ghost64.exe as their main binary. Once installed, an attacker can:

The "ghost" name, and the ghost64exe filename, have been used by various real-world cyber threats, including ransomware, trojans, coin miners, and remote access trojans (RATs). This makes careful identification critical. ghost64exe

Restoring a computer to a previous working state after a drive failure. Some variants of the Ghost RAT family use ghost64