Summary: 2025/04/17 15:55

First reported date: 2010/06/28
Inquiry period : 2025/04/10 15:55 ~ 2025/04/17 15:55 (7 days), 3 search results

전 기간대비 -100% 낮은 트렌드를 보이고 있습니다.
전 기간대비 상승한 Top5 연관 키워드는
target Software Update Victim Java 입니다.
악성코드 유형 Vawtrak GameoverP2P 도 새롭게 확인됩니다.
공격기술 RCE hijack Hijacking 도 새롭게 확인됩니다.
기관 및 기업 Microsoft Government Kaspersky Russia 도 새롭게 확인됩니다.
기타 Cryptocurrency package source AnyDesk Supply chain 등 신규 키워드도 확인됩니다.

 * 최근 뉴스기사 Top3:
    ㆍ 2025/04/10 Atomic and Exodus crypto wallets targeted in malicious npm campaign
    ㆍ 2025/04/10 Atomic and Exodus crypto wallets targeted in malicious npm campaign
    ㆍ 2025/04/10 GOFFEE continues to attack organizations in Russia

Trend graph by period


Related keyword cloud
Top 100

# Trend Count Comparison
1target 3 ▲ 1 (33%)
2Microsoft 3 ▲ new
3Software 3 ▲ 1 (33%)
4RCE 3 ▲ new
5Downloader 3 ▼ -3 (-100%)
6Campaign 3 - 0 (0%)
7Update 3 ▲ 2 (67%)
8Victim 3 ▲ 2 (67%)
9Cryptocurrency 2 ▲ new
10Java 2 ▲ 1 (50%)
11Criminal 2 - 0 (0%)
12hijack 2 ▲ new
13Hijacking 2 ▲ new
14Malware 2 - 0 (0%)
15malicious 2 ▲ 1 (50%)
16attack 2 ▲ 1 (50%)
17package 2 ▲ new
18IoC 2 ▲ 1 (50%)
19Report 2 - 0 (0%)
20source 1 ▲ new
21Trojan 1 - 0 (0%)
22AnyDesk 1 ▲ new
23Supply chain 1 ▲ new
24Operation 1 ▲ new
25file 1 - 0 (0%)
26open 1 ▲ new
27Advertising 1 - 0 (0%)
28Government 1 ▲ new
29Email 1 ▲ new
30Kaspersky 1 ▲ new
31Windows 1 - 0 (0%)
32Vawtrak 1 ▲ new
33GameoverP2P 1 ▲ new
34SMB 1 ▲ new
35Distribution 1 - 0 (0%)
36powershell 1 - 0 (0%)
37VBScript 1 ▲ new
38c&c 1 ▼ -2 (-200%)
39United States 1 - 0 (0%)
40Russia 1 ▲ new
41Phishing 1 - 0 (0%)
42Atomic 1 ▲ new
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


Keyword Average Label
Trojan
1 (33.3%)
Vawtrak
1 (33.3%)
GameoverP2P
1 (33.3%)
Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


Keyword Average Label
Attack technique
Technique

This is an attack technique that is becoming an issue.


Keyword Average Label
RCE
3 (21.4%)
Downloader
3 (21.4%)
Campaign
3 (21.4%)
hijack
2 (14.3%)
Hijacking
2 (14.3%)
Country & Company
Country & Company

This is a country or company that is an issue.


Keyword Average Label
Microsoft
3 (42.9%)
Government
1 (14.3%)
Kaspersky
1 (14.3%)
United States
1 (14.3%)
Russia
1 (14.3%)

Additional information

Level Description
watch Resumed a suspended thread in a remote process potentially indicative of process injection
notice Allocates read-write-execute memory (usually to unpack itself)
notice Changes read-write memory protection to read-execute (probably to avoid detection when setting all RWX flags at the same time)
notice Potentially malicious URLs were found in the process memory dump
notice Uses Windows utilities for basic Windows functionality
notice Yara rule detected in process memory
Network SSLBL: Malicious JA3 SSL-Client Fingerprint detected (Tofsee)
No data
No URL CC ASN Co Reporter Date
1http://147.124.216.113/image.exe
DBatLoader downloader malware trojan VIPKeylogger
US USAC-AS-1Joker2025.01.03
2https://hybrid-independently-eve-hint.trycloudflare.com/om.js
downloader js obfuscated opendir webdav
DaveLikesMalwre2024.12.29
3http://37.120.234.31/Update-KB5005101.zip
bat downloader Encoded opendir reverseshell
RO ROSecure Data Systems SRLDaveLikesMalwre2024.12.10
4https://hoteltoscanaplaza.com.co/Index.txt
downloader js
US USUNIFIEDLAYER-AS-1DaveLikesMalwre2024.11.03
5https://rartxt41.b-cdn.net/raril4.txt
downloader Lumma ps1 ua-wget
US USDaveLikesMalwre2024.10.12
View only the last 5
Beta Service, If you select keyword, you can check detailed information.