Summary: 2025/05/04 09:21

First reported date: 2016/07/08
Inquiry period : 2025/04/27 09:21 ~ 2025/05/04 09:21 (7 days), 3 search results

전 기간대비 신규 트렌드를 보이고 있습니다.
악성코드 유형
QuasarRAT PlugX BPFDoor 도 새롭게 확인됩니다.
공격자 Volt Typhoon Red Menshen HAFNIUM APT3 APT27 APT1 도 새롭게 확인됩니다.
공격기술 hacking Phishing Spear Phishing Backdoor Campaign 도 새롭게 확인됩니다.
기관 및 기업 China Italy Microsoft Mandiant South Korea United States 도 새롭게 확인됩니다.
기타 Cobalt Strike APT10 Software 교황 바티칸 등 신규 키워드도 확인됩니다.

Quasar is a very popular RAT in the world thanks to its code being available in open-source. This malware can be used to control the victim’s computer remotely.  Ref.

 * 최근 뉴스기사 Top3:
    ㆍ 2025/05/02 SKT 해킹 배후에 중국 그림자?.. 악명 떨치는 중국계 해킹 조직들
    ㆍ 2025/04/30 '디지털 요새' 사이버 바티칸, 교황 선거를 지켜낼 수 있을까
    ㆍ 2025/04/30 '디지털 요새' 사이버 바티칸, 교황 선거를 지켜낼 수 있을까


참고로 동일한 그룹의 악성코드 타입은 Remcos njRAT QuasarRAT 등 112개 종이 확인됩니다.

Trend graph by period


Related keyword cloud
Top 100

QuasarRAThackingCobalt StrikeAPT10PhishingChinaSoftware교황바티칸PlugXItalyForensicsAPT32MicrosoftBPFDoorSpear PhishingBackdoorMandiantZeroDayLinuxVolt TyphoonSouth KoreaRed MenshenUnited StatesCampaignReportMalwareVulnerabilityHAFNIUMAPT3APT27APT41APT1Earth Blu
Special keyword group
Top 5

Malware Type
Malware Type

This is the type of malware that is becoming an issue.


Keyword Average Label
QuasarRAT
3 (50%)
PlugX
2 (33.3%)
BPFDoor
1 (16.7%)
Attacker & Actors
Attacker & Actors

The status of the attacker or attack group being issued.


Keyword Average Label
Volt Typhoon
1 (16.7%)
Red Menshen
1 (16.7%)
HAFNIUM
1 (16.7%)
APT3
1 (16.7%)
APT27
1 (16.7%)
Attack technique
Technique

This is an attack technique that is becoming an issue.


Keyword Average Label
hacking
3 (33.3%)
Phishing
3 (33.3%)
Spear Phishing
1 (11.1%)
Backdoor
1 (11.1%)
Campaign
1 (11.1%)
Country & Company
Country & Company

This is a country or company that is an issue.


Keyword Average Label
China
3 (33.3%)
Italy
2 (22.2%)
Microsoft
1 (11.1%)
Mandiant
1 (11.1%)
South Korea
1 (11.1%)
Malware Family
Top 5

A malware family is a group of applications with similar attack techniques.
In this trend, it is classified into Ransomware, Stealer, RAT or Backdoor, Loader, Botnet, Cryptocurrency Miner.

Additional information

No data
No data
No Category URL CC ASN Co Date
1c2http://185.246.113.135:1604/ES ESSoltia Consulting SL2025.04.14
2c2http://217.195.197.192:1604/TR TR...2025.03.06
3c2http://gamwtonxristo.ddns.net/2025.02.04
4c2http://85.192.29.60:5173/RU RULine Group Ltd.2025.01.09
5c2http://asd123123.zapto.org/2024.08.08
View only the last 5
No URL CC ASN Co Reporter Date
1http://github.com/anonam999/aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa...
QuasarRAT
US USMICROSOFT-CORP-MSN-AS-BLOCKDaveLikesMalwre2025.04.28
2http://github.com/WariblE82/Miner/raw/main/MinerBTC.exe
QuasarRAT
US USMICROSOFT-CORP-MSN-AS-BLOCKDaveLikesMalwre2025.04.28
3http://github.com/00094/String-Remover/raw/refs/heads/main/rah.exe
QuasarRAT
US USMICROSOFT-CORP-MSN-AS-BLOCKDaveLikesMalwre2025.04.28
4http://185.39.17.162/files/1781548144/CzdmqAp.exe
exe QuasarRAT
RU RUJoint Stock Company Tagnetabuse_ch2025.04.27
5http://185.215.113.19//inc/Pichon.exe
QuasarRAT
anonymous2025.04.26
View only the last 5
Beta Service, If you select keyword, you can check detailed information.