Klackring

Malware type
dropper
Profile updated
2026-07-07 14:54:19

Targeted industries: technology-and-telecommunications government-and-public-sector

Targeted regions: country_code:kr country_code:us

Context

Microsoft describes that threat actor ZINC is using Klackring as a malware dropped by ComeBacker, both being used to target security researchers.

Detection coverage

  • 1 YARA rules

Detection rules

  • DITEKSHEN_MALWARE_Win_Klackring (yara-rule)

Reports & references

  • Microsoft — Zinc Attacks Against Security Researchers (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Klackring (report)

External references