Summary: 2025/04/28 23:51
First reported date: 2024/06/18
Inquiry period : 2025/03/29 23:51 ~ 2025/04/28 23:51 (1 months), 39 search results
전 기간대비 13% 높은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는 ClickFix Malware Social Engineering Proofpoint Report 입니다.
악성코드 유형 Ransomware QakBot QuasarRAT SectopRAT 도 새롭게 확인됩니다.
공격자 Lazarus Kimsuky MuddyWater 도 새롭게 확인됩니다.
공격기술 clearfake Backdoor 도 새롭게 확인됩니다.
기관 및 기업 North Korea Kaspersky Iran Russia dprk Binance 도 새롭게 확인됩니다.
기타 North Korea StateSponsored Contagious Interlock 등 신규 키워드도 확인됩니다.
* 최근 뉴스기사 Top3:
ㆍ 2025/04/17 State-Sponsored Hackers Weaponize ClickFix Tactic in Targeted Malware Campaigns
ㆍ 2025/04/17 Interlock ransomware evolves tactics with ClickFix, infostealers
ㆍ 2025/04/07 ⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Comeback and More
Trend graph by period
Related keyword cloud
Top 100# | Trend | Count | Comparison |
---|---|---|---|
1 | ClickFix | 39 | ▲ 5 (13%) |
2 | North Korea | 17 | ▲ new |
3 | Malware | 16 | ▲ 5 (31%) |
4 | Campaign | 10 | ▼ -2 (-20%) |
5 | Lazarus | 10 | ▲ new |
6 | Social Engineering | 9 | ▲ 6 (67%) |
7 | North | 8 | ▲ new |
8 | Proofpoint | 8 | ▲ 7 (88%) |
9 | Kaspersky | 7 | ▲ new |
10 | Iran | 7 | ▲ new |
11 | Russia | 7 | ▲ new |
12 | Report | 6 | ▲ 5 (83%) |
13 | Korea | 6 | ▲ new |
14 | attack | 6 | ▼ -1 (-17%) |
15 | clearfake | 5 | ▲ new |
16 | StateSponsored | 5 | ▲ new |
17 | target | 5 | ▲ 3 (60%) |
18 | Contagious | 5 | ▲ new |
19 | hacking | 5 | ▲ 4 (80%) |
20 | Interlock | 4 | ▲ new |
21 | Ransomware | 4 | ▲ new |
22 | tactic | 4 | ▲ new |
23 | ClickFake | 4 | ▲ new |
24 | Interview | 4 | ▲ new |
25 | Phishing | 4 | ▼ -2 (-50%) |
26 | Backdoor | 4 | ▲ new |
27 | Windows | 4 | ▲ 3 (75%) |
28 | Group | 3 | ▲ new |
29 | cti | 3 | ▲ new |
30 | Criminal | 3 | ▲ 2 (67%) |
31 | Update | 3 | ▼ -1 (-33%) |
32 | dprk | 3 | ▲ new |
33 | socialengineering | 3 | ▲ new |
34 | threat | 3 | ▲ 1 (33%) |
35 | powershell | 3 | - 0 (0%) |
36 | Reading | 3 | ▲ new |
37 | Dark | 3 | ▲ new |
38 | Distribution | 2 | ▼ -2 (-100%) |
39 | 공격 | 2 | ▲ new |
40 | Try | 2 | ▲ new |
41 | IoC | 2 | ▲ 1 (50%) |
42 | NetWireRC | 2 | - 0 (0%) |
43 | MacOS | 2 | ▲ new |
44 | TA427 | 2 | ▲ new |
45 | Victim | 2 | ▲ 1 (50%) |
46 | World | 2 | ▲ new |
47 | Cryptocurrency | 2 | ▲ new |
48 | contagiousinterview | 2 | ▲ new |
49 | captcha | 2 | ▲ new |
50 | golangghost | 2 | ▲ new |
51 | QakBot | 2 | ▲ new |
52 | Exploit | 2 | ▲ 1 (50%) |
53 | March | 2 | ▲ new |
54 | gang | 2 | ▲ new |
55 | Password | 2 | ▲ 1 (50%) |
56 | threatinsight | 2 | ▲ new |
57 | From | 2 | ▲ new |
58 | httpstco | 2 | ▲ new |
59 | social | 2 | ▲ 1 (50%) |
60 | engineering | 2 | ▲ 1 (50%) |
61 | NortonLifeLock | 1 | ▲ new |
62 | Copy | 1 | ▲ new |
63 | cyberthreat | 1 | ▲ new |
64 | Hackers | 1 | - 0 (0%) |
65 | ThreatProtection | 1 | ▲ new |
66 | Weaponize | 1 | ▲ new |
67 | Kimsuky | 1 | ▲ new |
68 | beavertail | 1 | ▲ new |
69 | MuddyWater | 1 | ▲ new |
70 | invisibleferret | 1 | ▲ new |
71 | think | 1 | ▲ new |
72 | ottercookie | 1 | ▲ new |
73 | famouschollima | 1 | ▲ new |
74 | United States | 1 | ▲ new |
75 | Advertising | 1 | ▼ -2 (-200%) |
76 | QuasarRAT | 1 | ▲ new |
77 | State | 1 | ▲ new |
78 | PC | 1 | ▲ new |
79 | initial | 1 | ▲ new |
80 | US | 1 | ▲ new |
81 | Get | 1 | ▲ new |
82 | lesserknown | 1 | ▲ new |
83 | MWNEWS | 1 | ▼ -1 (-100%) |
84 | malwareanalysis | 1 | ▲ new |
85 | Stealer | 1 | ▼ -9 (-900%) |
86 | broker | 1 | ▲ new |
87 | access | 1 | - 0 (0%) |
88 | Binance | 1 | ▲ new |
89 | popular | 1 | ▲ new |
90 | SectopRAT | 1 | ▲ new |
91 | NodejsPowered | 1 | ▲ new |
92 | Alert | 1 | ▲ new |
93 | Microsoft | 1 | ▼ -5 (-500%) |
94 | fake | 1 | ▲ new |
95 | Paste | 1 | ▲ new |
96 | share | 1 | ▲ new |
97 | show | 1 | ▲ new |
98 | Cloudflare | 1 | ▼ -2 (-200%) |
99 | Recap | 1 | ▲ new |
100 | page | 1 | ▲ new |
Special keyword group
Top 5
Malware Type
This is the type of malware that is becoming an issue.
Keyword | Average | Label |
---|---|---|
Ransomware |
|
4 (33.3%) |
NetWireRC |
|
2 (16.7%) |
QakBot |
|
2 (16.7%) |
QuasarRAT |
|
1 (8.3%) |
SectopRAT |
|
1 (8.3%) |

Attacker & Actors
The status of the attacker or attack group being issued.
Keyword | Average | Label |
---|---|---|
Lazarus |
|
10 (76.9%) |
Kimsuky |
|
1 (7.7%) |
MuddyWater |
|
1 (7.7%) |
라자루스 |
|
1 (7.7%) |

Technique
This is an attack technique that is becoming an issue.
Keyword | Average | Label |
---|---|---|
ClickFix |
|
39 (48.1%) |
Campaign |
|
10 (12.3%) |
Social Engineering |
|
9 (11.1%) |
clearfake |
|
5 (6.2%) |
hacking |
|
5 (6.2%) |

Country & Company
This is a country or company that is an issue.
Keyword | Average | Label |
---|---|---|
North Korea |
|
17 (30.9%) |
Proofpoint |
|
8 (14.5%) |
Kaspersky |
|
7 (12.7%) |
Iran |
|
7 (12.7%) |
Russia |
|
7 (12.7%) |
Threat info
Last 5SNS
(Total : 31)ClickFix North Korea Malware Proofpoint Kaspersky Campaign attack Iran Russia Lazarus Social Engineering Report clearfake target powershell Ransomware Criminal dprk IoC Phishing Attacker hacking QakBot Microsoft Binance SectopRAT NetWireRC QuasarRAT LinkedIn Exploit APT Password Update Browser IOCs ...
News
(Total : 8)ClickFix Malware Lazarus Campaign Social Engineering North Korea Backdoor Windows hacking Update Cryptocurrency Phishing Attacker Distribution MuddyWater Kimsuky Kaspersky 악성코드 Iran Downloader Software Russia target RAT ClearFake Victim Ransomware Stealer iCloud Report Java VPN MacOS France 라자루스 Oracle Exploit Password Twitter plugin Supply chain NetWireRC c&c South Korea schtasks AhnLab BLINDINGCAN GitHub
No | Title | Date |
---|---|---|
1 | State-Sponsored Hackers Weaponize ClickFix Tactic in Targeted Malware Campaigns - The Hacker News | 2025.04.17 |
2 | Interlock ransomware evolves tactics with ClickFix, infostealers - Malware.News | 2025.04.17 |
3 | Around the World in 90 Days: State-Sponsored Actors Try ClickFix - Proofpoint / Saher Naumaan and Mark Kelly and Greg Lesnewich and Josh Miller / malpedia | 2025.04.17 |
4 | ⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Comeback and More - The Hacker News | 2025.04.07 |
5 | 북한 해커 조직, 악성 npm 패키지 11개 추가 배포… 한국 개발자 공격 - 시큐리티팩트 | 2025.04.07 |
Additional information
No | Title | Date |
---|---|---|
1 | Employee monitoring app exposes users, leaks 21+ million screenshots - Malware.News | 2025.04.28 |
2 | Introducing XSIAM 3.0 - Malware.News | 2025.04.28 |
3 | Deploy Bravely with Prisma AIRS - Malware.News | 2025.04.28 |
4 | 2025 Cyber Resilience Research Discovers Speed of AI Advancing Emerging Attack Types - Malware.News | 2025.04.28 |
5 | Intel CEO Targets Change in Corporate Culture to Shape Up - Bloomberg Technology | 2025.04.28 |
View only the last 5 |
No | Title | Date |
---|---|---|
1 | State-Sponsored Hackers Weaponize ClickFix Tactic in Targeted Malware Campaigns - The Hacker News | 2025.04.17 |
2 | ⚡ Weekly Recap: VPN Exploits, Oracle's Silent Breach, ClickFix Comeback and More - The Hacker News | 2025.04.07 |
3 | 북한 해커 조직, 악성 npm 패키지 11개 추가 배포… 한국 개발자 공격 - 시큐리티팩트 | 2025.04.07 |
4 | ClickFix: How to Infect Your PC in Three Easy Steps - Malware.News | 2025.03.15 |
5 | ClickFix: How to Infect Your PC in Three Easy Steps - Malware.News | 2025.03.15 |
View only the last 5 |
No | URL | CC | ASN Co | Reporter | Date |
---|---|---|---|---|---|
1 | http://highspring.247supportsolutions.com:8080/converge.exe ClickFix exe FakeCaptcha | US ![]() | AMAZON-02 | DaveLikesMalwre | 2025.04.28 |
2 | https://stealer.cy/static/packaged_py.zip ClickFix FakeCaptcha | RU ![]() | Ddos-guard Ltd | DaveLikesMalwre | 2025.04.28 |
3 | https://stealer.cy/psc?uid=12%5E ClickFix FakeCaptcha | RU ![]() | Ddos-guard Ltd | DaveLikesMalwre | 2025.04.28 |
4 | https://stealer.cy/py-captcha?uid=12 ClickFix FakeCaptcha | RU ![]() | Ddos-guard Ltd | DaveLikesMalwre | 2025.04.28 |
5 | http://185.39.17.70/zgrnf/njg.exe booking ClickFix FakeCaptcha | RU ![]() | Joint Stock Company Tagnet | JAMESWT_WT | 2025.04.28 |
View only the last 5 |