Fake Zoom installers being used to distribute malware

Attackers are taking advantage of the increased popularity of the Zoom video conferencing service to distribute installers that are bund...


Attackers are taking advantage of the increased popularity of the Zoom video conferencing service to distribute installers that are bundled with malware and adware applications.
As people are spending more time indoors and performing physical/social distancing, many have started using Zoom meetings for remote work, exercise classes, and virtual get-togethers.
knowing this, threat actors have started distributing Zoom client installers bundled with malware such as Coinminers, Remote Access Trojans, and adware bundles.
Today, TrendMicro reports that they have found a Zoom Installer being distributed that will also install a cryptocurrency miner on the victim’s computer.
“We found a Coinminer bundled with the legitimate installer of video conferencing app Zoom, luring users who want to install the software but end up unwittingly downloading a malicious file. The compromised files are not from Zoom’s official download center, and are assumed to come from fraudulent websites. We have been working with Zoom to ensure that they are able to communicate this to their users appropriately.”
When installed, this malware will attempt to use your GPU and CPU to mine for the Monero cryptocurrency, which will cause your computer to become slower, potentially overheat, and potentially damage the hardware in your computer.
Other Zoom client installers found by BleepingComputer are being distributed with unwanted software bundles or Remote Access Trojans.
For example, the below Zoom Installer is targeting German users with other unwanted “offers” along with the Zoom client.

Another malicious Zoom Installer will install the njRAT Remote Access Trojan, otherwise known as Bladabindi, that will give the attacker full access to the infected victim’s computer.
This would allow the attacker to steal your data, take screenshots with your webcam, or execute commands to download and install other malware.
As most of these malware samples, ultimately install the Zoom client, users are not aware that other malicious applications were installed on their computer as well.
To prevent this, always download the Zoom client from the official Zoom download section or when prompted by a Zoom meeting invite on the Zoom.us site.
Downloading from any other location only greatly increases the chance you will become infected.

COMMENTS

Name

Android,40,Apps,14,Business,5,Camtel,2,Downloads,18,Drivers,3,Free Surf,5,FRP Bypass,12,Games,5,how to,12,Mobile Roms,2,MTN,5,Nexttel,3,Orange,5,PC Software,10,Pro Apps,19,Tech News,8,Telecom,9,Tools,11,Tricks,7,Unlocking,11,VPN,2,
ltr
item
Techboy237blog: Fake Zoom installers being used to distribute malware
Fake Zoom installers being used to distribute malware
https://www.digitalmunition.me/wp-content/uploads/1586190321_695_Fake-Zoom-installers-being-used-to-distribute-malware.jpg
Techboy237blog
https://www.techboy237blog.com/2020/04/fake-zoom-installers-being-used-to.html
https://www.techboy237blog.com/
https://www.techboy237blog.com/
https://www.techboy237blog.com/2020/04/fake-zoom-installers-being-used-to.html
true
5734106208253296210
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share to a social network STEP 2: Click the link on your social network Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy