On September 30, 2026, a cyber attack involving the SmartApeSG ClickFix campaign was observed delivering the CNCmachineRMS Remote Access Trojan (RAT). This infection technique typically utilizes social engineering lures to trick users into executing malicious code, ultimately leading to full system compromise.
The analysis identifies the Command and Control (C2) server for this specific infection as 195.63.128[.]106. Forensic artifacts such as network traffic captures (pcap), HTTPS logs, and the RAT binaries are available for further technical examination and threat intelligence purposes.
Top comments (0)