Home GADGETS Google Surfaces Malware-Laden Fake CPU-Z Installer in Search Results

Google Surfaces Malware-Laden Fake CPU-Z Installer in Search Results

A word coined accurately: a malvertising campaign has been running ads on Google search, pretending to be a widely used legitimate and non-malicious system information tool CPU-Z. This deceptive campaign has been running ads via Google Search, tricking users into downloading its version of CPU-Z containing the Redline info-stealing malware. While some users may have browser protection and anti-virus apps that would normally detect this, the installer has been digitally signed yet contains a malicious PowerShell script, thus aiding in evading detection.

One such website was created, and this campaign ran from November 2 until the time the owner turned off the website. According to WHOIS information at the time, the domain name is from Namecheap, and PQ Hosting hosts the website server. It should be also noted that according to Whois details, this was updated one day ago at the time of writing, so it is likely the website owner may have changed the website hosting server and kept it disabled.

Source link