ClickFix Attack Chain Detected — Malicious Infrastructure Contacted
This rule monitors for outbound network connections to domains and IP addresses associated with known phishing, loader, and C2 infrastructure, including specific ClickFix patterns.
Microsoft Sentinel (KQL)

