北 랜섬웨어 관련 비트코인 주소 트랜잭션 추적(9)

2023-04-05 Plainbit Tracking Bitcoin address transactions related to North Korean ransomware (9)

https://blog.plainbit.co.kr/cisa-northkorea-ransomware-1fx4w9rrg4f3uc7gj18gcwgab8xuw8ajy2/

Plainbit reviews CISA-listed North Korea ransomware address 1FX4W9rrG4F3Uc7gJ18GCwGab8XuW8Ajy2 and finds that QLUE identifies it as a Binance deposit address in cluster 419867548. The address carries Binance, ransomware, sent-to-Binance, and North Korea flags and processed 3,464 transactions totaling 1,126.67631961 BTC between October 2018 and June 2020. Because the address belongs to a large exchange cluster with more than 162,000 addresses, the source concludes that further transaction tracing does not produce meaningful attribution or fund-flow insight. The value of the item is mainly in confirming that a CISA-listed North Korea ransomware indicator maps to Binance exchange infrastructure rather than a standalone attacker wallet.

Related Reports

« Back